Vulnerabilities
Vulnerable Software
Jpress:  >> Jpress  >> 4.2.0  Security Vulnerabilities
jpress v4.2.0 allows users to register an account by default. With the account, user can upload arbitrary files to the server.
CVSS Score
8.8
EPSS Score
0.006
Published
2022-01-19
jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.
CVSS Score
9.8
EPSS Score
0.022
Published
2022-01-13
jpress v4.2.0 admin panel provides a function through which attackers can modify the template and inject some malicious code.
CVSS Score
8.8
EPSS Score
0.013
Published
2022-01-13


Contact Us

Shodan ® - All rights reserved