İçeriğe atla
Noroxi

Mautic kayıtları

mautic üreticisine ait 11 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%81,8
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

11 kayıt
  • CVE-2018-8092
    39İzleyin

    Mautic before 2.13.0 allows CSV injection.

    KritikCVSS 9,8İstismar yokEPSS %2

    mautic · mautic18 Nis 2018

  • CVE-2020-35129
    36İzleyin

    Mautic before 3.2.4 is affected by stored XSS.

    KritikCVSS 9,0İstismar yokEPSS %1

    mautic · mautic19 Oca 2021

  • Mautic versions 2.0.0 - 2.11.0 with a SSO plugin installed could allow a disabled user to still login using email address

    YüksekCVSS 8,1İstismar yokEPSS %1

    mautic · mautic3 Oca 2018

  • CVE-2018-10189
    30İzleyin

    An issue was discovered in Mautic 1.x and 2.x before 2.13.0.

    YüksekCVSS 7,5İstismar yokEPSS %1

    mautic · mautic17 Nis 2018

  • Mautic 2.6.1 and earlier fails to set flags on session cookies

    YüksekCVSS 7,5İstismar yokEPSS %1

    mautic · mautic17 Tem 2017

  • Mautic versions 1.0.0 - 2.11.0 are vulnerable to allowing any authorized Mautic user session (must be logged into Mautic) to use the Fileman

    OrtaCVSS 6,5İstismar yokEPSS %1

    mautic · mautic3 Oca 2018

  • Mautic version 2.11.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in Company's name that can result in denial of service

    OrtaCVSS 6,1İstismar yokEPSS %1

    mautic · mautic9 Şub 2018

  • Mautic version 2.1.0 - 2.11.0 is vulnerable to an inline JS XSS attack when using Mautic forms on a Mautic landing page using GET parameters

    OrtaCVSS 6,1İstismar yokEPSS %1

    mautic · mautic3 Oca 2018

  • CVE-2018-8071
    24İzleyin

    Mautic before v2.13.0 has stored XSS via a theme config file.

    OrtaCVSS 6,1İstismar yokEPSS %1

    mautic · mautic18 Nis 2018

  • CVE-2024-2730
    21İzleyin

    Predictable Page Indexing Might Lead to Sensitive Data Exposure in Mautic

    OrtaCVSS 5,3İstismar yokEPSS %1

    mautic · mautic10 Nis 2024

  • CVE-2024-3448
    20İzleyin

    Improper Access Control Leads to Server-Side Request Forgery in Mautic

    OrtaCVSS 5,0İstismar yokEPSS %0

    mautic · mautic10 Nis 2024