Vulnerabilities
Vulnerable Software
Snipeitapp:  >> Snipe-It  >> 1.2.5  Security Vulnerabilities
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVSS Score
6.4
EPSS Score
0.003
Published
2021-12-14
snipe-it is vulnerable to Improper Access Control
CVSS Score
4.3
EPSS Score
0.001
Published
2021-12-10
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVSS Score
6.3
EPSS Score
0.002
Published
2021-12-01
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVSS Score
8.0
EPSS Score
0.004
Published
2021-11-19
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVSS Score
3.9
EPSS Score
0.002
Published
2021-11-13
snipe-it is vulnerable to Cross-Site Request Forgery (CSRF)
CVSS Score
4.3
EPSS Score
0.001
Published
2021-11-13
snipe-it is vulnerable to Cross-Site Request Forgery (CSRF)
CVSS Score
4.3
EPSS Score
0.002
Published
2021-10-19
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVSS Score
5.5
EPSS Score
0.002
Published
2021-10-19
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVSS Score
6.8
EPSS Score
0.005
Published
2021-10-19
Snipe-IT before 4.6.14 has XSS, as demonstrated by log_meta values and the user's last name in the API.
CVSS Score
6.1
EPSS Score
0.002
Published
2019-03-27


Contact Us

Shodan ® - All rights reserved