Skip to content
Noroxi

mk-auth records

9 published records for vendor mk-auth.

All records

9 records
  • An issue was discovered in MK-AUTH 19.01.

    CriticalCVSS 9.8No exploitEPSS 3%

    mk-auth · mk-authJun 29, 2020

  • An issue was discovered in MK-AUTH 19.01.

    CriticalCVSS 9.8No exploitEPSS 2%

    mk-auth · mk-authJun 29, 2020

  • An issue was discovered in MK-AUTH 19.01.

    CriticalCVSS 9.8No exploitEPSS 1%

    mk-auth · mk-authJun 29, 2020

  • An arbitrary file upload vulnerability in the Virtual Disk of MK-Auth 23.01K4.9 allows attackers to execute arbitrary code via uploading a c

    HighCVSS 8.8No exploitEPSS 1%

    mk-auth · mk-authMar 28, 2023

  • MK-AUTH through 19.01 K4.9 allows CSRF for password changes via the central/executar_central.php?acao=altsenha_princ URI.

    HighCVSS 8.8No exploitEPSS 1%

    mk-auth · mk-authJan 3, 2021

  • An issue was discovered in MK-AUTH 19.01.

    MediumCVSS 6.8No exploitEPSS 0%

    mk-auth · mk-authJun 29, 2020

  • An issue was discovered in MK-AUTH 19.01.

    MediumCVSS 6.1No exploitEPSS 1%

    mk-auth · mk-authJun 29, 2020

  • MK-AUTH through 19.01 K4.9 allows XSS via the admin/logs_ajax.php tipo parameter.

    MediumCVSS 4.8No exploitEPSS 1%

    mk-auth · mk-authJan 3, 2021

  • CVE-2021-3005
    17Monitor

    MK-AUTH through 19.01 K4.9 allows remote attackers to obtain sensitive information (e.g., a CPF number) via a modified titulo (aka invoice n

    MediumCVSS 4.3No exploitEPSS 1%

    mk-auth · mk-authJan 3, 2021