Vulnerabilities
Vulnerable Software
Chevereto:  >> Chevereto  >> 1.91  Security Vulnerabilities
Directory traversal vulnerability in Upload/engine.php in Chevereto 1.9.1 allows remote attackers to determine the existence of arbitrary files via a .. (dot dot) in the v parameter.
CVSS Score
5.0
EPSS Score
0.081
Published
2012-05-21
Cross-site scripting (XSS) vulnerability in Upload/engine.php in Chevereto 1.91 allows remote attackers to inject arbitrary web script or HTML via the v parameter.
CVSS Score
4.3
EPSS Score
0.022
Published
2012-05-21


Contact Us

Shodan ® - All rights reserved