Vulnerabilities
Vulnerable Software
Opencrx:  >> Opencrx  >> 5.2.2  Security Vulnerabilities
An issue in openCRX v.5.2.2 allows a remote attacker to read internal files and execute server side request forgery attack via insecure DocumentBuilderFactory.
CVSS Score
9.8
EPSS Score
0.008
Published
2023-10-30
OpenCRX before v5.2.2 was discovered to be vulnerable to password enumeration due to the difference in error messages received during a password reset which could enable an attacker to determine if a username, email or ID is valid.
CVSS Score
5.3
EPSS Score
0.001
Published
2022-10-20


Contact Us

Shodan ® - All rights reserved