Vulnerabilities
Vulnerable Software
Easycorp:  >> Zentao  >> 12.5.3  Security Vulnerabilities
Cross Site Scripting vulnerability found in Zentao allows a remote attacker to execute arbitrary code via the lang parameter
CVSS Score
6.1
EPSS Score
0.002
Published
2023-04-04
The Cron job tab in EasyCorp ZenTao 12.5.3 allows remote attackers (who have admin access) to execute arbitrary code by setting the type parameter to System.
CVSS Score
7.2
EPSS Score
0.091
Published
2021-08-31
A cross-site request forgery (CSRF) vulnerability in the Cron job tab in EasyCorp ZenTao 12.5.3 allows attackers to update the fields of a Cron job.
CVSS Score
4.3
EPSS Score
0.001
Published
2021-08-31
A cross site scripting (XSS) issue in EasyCorp ZenTao 12.5.3 allows remote attackers to execute arbitrary web script via various areas such as data-link-creator.
CVSS Score
6.1
EPSS Score
0.002
Published
2021-08-31


Contact Us

Shodan ® - All rights reserved