Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Beego:
>> Beego
>> 1.12.4
Security Vulnerabilities
CVE-2024-40464
An issue in beego v.2.2.0 and before allows a remote attacker to escalate privileges via the sendMail function located in beego/core/logs/smtp.go file
CVSS Score
8.8
EPSS Score
0.001
Published
2024-07-31
CVE-2024-40465
An issue in beego v.2.2.0 and before allows a remote attacker to escalate privileges via the getCacheFileName function in file.go file
CVSS Score
8.8
EPSS Score
0.002
Published
2024-07-31
CVE-2022-31836
The leafInfo.match() function in Beego v2.0.3 and below uses path.join() to deal with wildcardvalues which can lead to cross directory risk.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-07-05
CVE-2022-31259
The route lookup process in beego before 1.12.9 and 2.x before 2.0.3 allows attackers to bypass access control. When a /p1/p2/:name route is configured, attackers can access it by appending .xml in various places (e.g., p1.xml instead of p1).
CVSS Score
9.8
EPSS Score
0.001
Published
2022-05-21
CVE-2021-30080
An issue was discovered in the route lookup process in beego before 1.12.11 that allows attackers to bypass access control.
CVSS Score
9.8
EPSS Score
0.003
Published
2022-04-05
CVE-2021-27116
An issue was discovered in file profile.go in function MemProf in beego through 2.0.2, allows attackers to launch symlink attacks locally.
CVSS Score
7.8
EPSS Score
0.002
Published
2022-04-05
CVE-2021-27117
An issue was discovered in file profile.go in function GetCPUProfile in beego through 2.0.2, allows attackers to launch symlink attacks locally.
CVSS Score
7.8
EPSS Score
0.002
Published
2022-04-05
Page 1
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved