Vulnerabilities
Vulnerable Software
Wegia:  >> Wegia  >> 3.2.0  Security Vulnerabilities
WeGIA 3.2.0 before 3998672 does not verify permission to change a password.
CVSS Score
7.5
EPSS Score
0.002
Published
2024-12-07
Multiple stored cross-site scripting (XSS) vulnerabilities in the component /configuracao/gateway_pagamento.php of WeGIA v3.2.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the id or name parameter.
CVSS Score
6.1
EPSS Score
0.0
Published
2024-12-05
Multiple stored cross-site scripting (XSS) vulnerabilities in the component /configuracao/meio_pagamento.php of WeGIA v3.2.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the id or name parameter.
CVSS Score
6.1
EPSS Score
0.0
Published
2024-12-05
WeGIA v3.2.0 was discovered to contain a Cross-Site Request Forgery (CSRF).
CVSS Score
8.8
EPSS Score
0.0
Published
2024-12-05


Contact Us

Shodan ® - All rights reserved