Vulnerabilities
Vulnerable Software
Kozos:  >> Easyctf  >> 1.1  Security Vulnerabilities
EasyCTF before 1.4 does not validate the session ID, which allows remote attackers to obtain access via a crafted HTTP request.
CVSS Score
5.0
EPSS Score
0.002
Published
2015-05-01
Cross-site scripting (XSS) vulnerability in EasyCTF before 1.4 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CVSS Score
3.5
EPSS Score
0.002
Published
2015-05-01
EasyCTF before 1.4 allows remote authenticated users to write executable content to files via unspecified vectors.
CVSS Score
6.5
EPSS Score
0.004
Published
2015-05-01


Contact Us

Shodan ® - All rights reserved