Vulnerabilities
Vulnerable Software
Jpress:  >> Jpress  Security Vulnerabilities
jpress 4.2.0 is vulnerable to remote code execution via io.jpress.web.admin._TemplateController#doInstall. The admin panel provides a function through which attackers can install templates and inject some malicious code.
CVSS Score
7.2
EPSS Score
0.024
Published
2022-01-26
jpress 4.2.0 is vulnerable to remote code execution via io.jpress.module.article.kit.ArticleNotifyKit#doSendEmail. The admin panel provides a function through which attackers can edit the email templates and inject some malicious code.
CVSS Score
7.2
EPSS Score
0.034
Published
2022-01-26
jpress 4.2.0 is vulnerable to remote code execution via io.jpress.module.page.PageNotifyKit#doSendEmail. The admin panel provides a function through which attackers can edit the email templates and inject some malicious code.
CVSS Score
7.2
EPSS Score
0.037
Published
2022-01-26
jpress v4.2.0 allows users to register an account by default. With the account, user can upload arbitrary files to the server.
CVSS Score
8.8
EPSS Score
0.006
Published
2022-01-19
jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.
CVSS Score
9.8
EPSS Score
0.022
Published
2022-01-13
jpress v4.2.0 admin panel provides a function through which attackers can modify the template and inject some malicious code.
CVSS Score
8.8
EPSS Score
0.013
Published
2022-01-13
An issue was discovered in JPress v3.3.0 and below. There are XSS vulnerabilities in the template module and tag management module. If you log in to the background by means of weak password, the storage XSS vulnerability can occur.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-06-18
XSS exists in JPress v1.0.4 via Markdown input, or Markdown input with the code input option.
CVSS Score
5.4
EPSS Score
0.002
Published
2019-01-14
In JPress v1.0-rc.5, there is stored XSS via each of the first three input fields to the starter-tomcat-1.0/admin/setting URI, as demonstrated by the web_name parameter.
CVSS Score
4.8
EPSS Score
0.002
Published
2018-11-11


Contact Us

Shodan ® - All rights reserved