Vulnerabilities
Vulnerable Software
Agentejo:  >> Cockpit  >> 2.6.3  Security Vulnerabilities
An arbitrary file upload vulnerability in the Upload Asset function of Cockpit CMS v2.6.3 allows attackers to execute arbitrary code via uploading a crafted .shtml file.
CVSS Score
6.1
EPSS Score
0.201
Published
2023-09-08
Cross-site Scripting (XSS) - Reflected in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
CVSS Score
6.1
EPSS Score
0.416
Published
2023-08-20
Cross-site Scripting (XSS) - Reflected in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
CVSS Score
8.3
EPSS Score
0.003
Published
2023-08-19
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
CVSS Score
8.3
EPSS Score
0.002
Published
2023-08-19
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
CVSS Score
8.1
EPSS Score
0.001
Published
2023-08-17


Contact Us

Shodan ® - All rights reserved