CTFd records
2 published records for vendor ctfd.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 50%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2020-7245No exploit | Incorrect username validation in the registration process of CTFd v2.0.0 - v2.2.2 allows an attacker to take over an arbitrary account if thctfd · ctfd · CWE-640 | Critical9.8 | — | 1.2% | Jan 23, 2020 |
26Monitor | CVE-2020-5290No exploit | session fixation in rCTFctfd · rctf · CWE-384 | Medium6.5 | — | 0.8% | Apr 1, 2020 |
- CVE-2020-724539Monitor
Incorrect username validation in the registration process of CTFd v2.0.0 - v2.2.2 allows an attacker to take over an arbitrary account if th
CriticalCVSS 9.8No exploitEPSS 1%ctfd · ctfdJan 23, 2020
- CVE-2020-529026Monitor
session fixation in rCTF
MediumCVSS 6.5No exploitEPSS 1%ctfd · rctfApr 1, 2020