Skip to content
Noroxi

peppermint records

4 published records for vendor peppermint.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

4 records
  • An issue in PeppermintLabs Peppermint v.0.2.4 and before allows a remote attacker to obtain sensitive information and execute arbitrary code

    HighCVSS 8.8No exploitEPSS 1%

    peppermint · peppermintSep 18, 2023

  • An issue in the password reset function of Peppermint v0.2.4 allows attackers to access the emails and passwords of the Tickets page via a c

    HighCVSS 8.1Proof of conceptEPSS 1%

    peppermint · peppermintMar 29, 2023

  • Peppermint Ticket Management before 0.2.4 allows remote attackers to read arbitrary files via a /api/v1/users/file/download?filepath=./../ P

    HighCVSS 7.5No exploitEPSS 1%

    peppermint · peppermintOct 29, 2023

  • Peppermint Ticket Management through 0.2.4 allows remote attackers to read arbitrary files via a /api/v1/ticket/1/file/download?filepath=../

    MediumCVSS 5.3No exploitEPSS 1%

    peppermint · peppermintOct 29, 2023