Skip to content
Noroxi

episerver records

6 published records for vendor episerver.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • Episerver Ektron CMS before 9.0 SP3 Site CU 31, 9.1 before SP3 Site CU 45, or 9.2 before SP2 Site CU 22 allows remote attackers to call aspx

    CriticalCVSS 9.8Proof of conceptEPSS 22%

    episerver · ektron cmsOct 10, 2018

  • XML external entity (XXE) vulnerability in Episerver 7 patch 4 and earlier allows remote attackers to read arbitrary files via a crafted DTD

    HighCVSS 7.5Proof of conceptEPSS 5%

    episerver · episerverAug 29, 2018

  • An Open Redirect vulnerability in EpiServer Find before 13.2.7 allows an attacker to redirect users to untrusted websites via the _t_redirec

    MediumCVSS 6.1Proof of conceptEPSS 5%

    episerver · findMar 31, 2021

  • CVE-2012-1031
    24Monitor

    Unspecified vulnerability in EPiServer CMS 5 and 6 through 6R2, in certain configurations using Forms Authentication, allows remote authenti

    MediumCVSS 6.0No exploitEPSS 1%

    episerver · episerver cmsFeb 8, 2012

  • CVE-2012-1032
    17Monitor

    Cross-site scripting (XSS) vulnerability in the Euroling SiteSeeker module 3.x before 3.4.5 for EPiServer allows remote attackers to inject

    MediumCVSS 4.3No exploitEPSS 1%

    siteseeker · euroling siteseekerSep 17, 2014

  • CVE-2012-1034
    17Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in the admin interface in EPiServer CMS through 6R2 allow remote attackers to inject arb

    MediumCVSS 4.3No exploitEPSS 1%

    episerver · episerver cmsFeb 8, 2012