Vulnerabilities
Vulnerable Software
Misp-Project:  >> Misp  >> 2.4.148  Security Vulnerabilities
An issue was discovered in MISP before 2.4.156. An SVG org logo (which may contain JavaScript) is not forbidden by default.
CVSS Score
6.1
EPSS Score
0.006
Published
2022-03-18
MISP 2.4.148, in certain configurations, allows SQL injection via the app/Model/Log.php $conditions['org'] value.
CVSS Score
9.8
EPSS Score
0.009
Published
2021-08-19


Contact Us

Shodan ® - All rights reserved