Vulnerabilities
Vulnerable Software
Ellevo:  >> Ellevo  Security Vulnerabilities
A reflected cross-site scripting (XSS) vulnerability in Ellevo 6.2.0.38160 allows attackers to execute arbitrary code in the context of a user's browser via a crafted payload or URL.
CVSS Score
6.1
EPSS Score
0.002
Published
2024-09-25
SQL Injection vulnerability in Ellevo v.6.2.0.38160 allows a remote attacker to obtain sensitive information via the /api/mob/instrucao/conta/destinatarios component.
CVSS Score
7.5
EPSS Score
0.001
Published
2024-09-11
An issue in Ellevo v.6.2.0.38160 allows a remote attacker to escalate privileges via the /api/usuario/cadastrodesuplente endpoint.
CVSS Score
6.3
EPSS Score
0.002
Published
2024-09-09


Contact Us

Shodan ® - All rights reserved