Vulnerabilities
Vulnerable Software
FlightPath 4.8.3 has XSS in the Content, Edit urgent message, and Users sections of the Admin Console. This could lead to cookie stealing and other malicious actions.
CVSS Score
6.1
EPSS Score
0.002
Published
2019-08-20
FlightPath 4.x and 5.0-x allows directory traversal and Local File Inclusion through the form_include parameter in an index.php?q=system-handle-form-submit POST request because of an include_once in system_handle_form_submit in modules/system/system.module.
CVSS Score
5.3
EPSS Score
0.6
Published
2019-07-10


Contact Us

Shodan ® - All rights reserved