Vulnerabilities
Vulnerable Software
Microweber:  Security Vulnerabilities
Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
6.5
EPSS Score
0.009
Published
2022-02-19
CRLF Injection leads to Stack Trace Exposure due to lack of filtering at https://demo.microweber.org/ in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
7.6
EPSS Score
0.214
Published
2022-02-18
Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
9.4
EPSS Score
0.075
Published
2022-02-18
Cross-Site Request Forgery (CSRF) in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
4.3
EPSS Score
0.001
Published
2022-02-17
Improper Validation of Specified Quantity in Input in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
5.4
EPSS Score
0.003
Published
2022-02-15
Open Redirect in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
4.3
EPSS Score
0.005
Published
2022-02-15
Open Redirect in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
4.3
EPSS Score
0.004
Published
2022-02-11
OS Command Injection in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
8.1
EPSS Score
0.126
Published
2022-02-11
Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
9.8
EPSS Score
0.003
Published
2022-02-10
Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11.
CVSS Score
6.5
EPSS Score
0.003
Published
2022-02-08


Contact Us

Shodan ® - All rights reserved