Vulnerabilities
Vulnerable Software
Hestiacp:  >> Hestiacp  Security Vulnerabilities
Cross-site Scripting (XSS) - Stored in GitHub repository hestiacp/hestiacp prior to 1.8.6.
CVSS Score
3.2
EPSS Score
0.001
Published
2023-10-13
Cross-site Scripting (XSS) - Reflected in GitHub repository hestiacp/hestiacp prior to 1.8.8.
CVSS Score
3.9
EPSS Score
0.0
Published
2023-09-20
An issue was discovered in HestiaCP before v1.3.5. Attackers are able to arbitrarily install packages due to values taken from the pgk [] parameter in the update request being transmitted to the operating system's package manager.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-08-18


Contact Us

Shodan ® - All rights reserved