monitorr records
5 published records for vendor monitorr.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 1 · 20%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-434 Unrestricted Upload of File with Dangerous Type2
- CWE-20 Improper Input Validation1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-863 Incorrect Authorization1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
65This week | CVE-2020-28871Weaponized | Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an inmonitorr · monitorr · CWE-434 | Critical9.8 | — | 85.8% | Feb 9, 2021 |
46Plan | CVE-2023-26775No exploit | File Upload vulnerability found in Monitorr v.1.7.6 allows a remote attacker t oexecute arbitrary code via a crafted file upload to the assemonitorr · monitorr · CWE-434 | High7.8 | — | 49.4% | Apr 4, 2023 |
40Plan | CVE-2020-28872No exploit | An authorization bypass vulnerability in Monitorr v1.7.6m in Monitorr/assets/config/_installation/_register.php allows an unauthorized persomonitorr · monitorr · CWE-863 | Critical9.8 | — | 3.3% | Apr 12, 2021 |
24Monitor | CVE-2023-26776No exploit | Cross Site Scripting vulnerability found in Monitorr v.1.7.6 allows a remote attacker to execute arbitrary code via the title parameter of tmonitorr · monitorr · CWE-79 | Medium6.1 | — | 1.2% | Apr 4, 2023 |
4Monitor | CVE-2025-7060No exploit | Monitorr Installer mkdbajax.php input validationmonitorr · monitorr · CWE-20 | Low1.2 | — | 0.5% | Jul 4, 2025 |
- CVE-2020-2887165This week
Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an in
CriticalCVSS 9.8WeaponizedEPSS 86%monitorr · monitorrFeb 9, 2021
- CVE-2023-2677546Plan
File Upload vulnerability found in Monitorr v.1.7.6 allows a remote attacker t oexecute arbitrary code via a crafted file upload to the asse
HighCVSS 7.8No exploitEPSS 49%monitorr · monitorrApr 4, 2023
- CVE-2020-2887240Plan
An authorization bypass vulnerability in Monitorr v1.7.6m in Monitorr/assets/config/_installation/_register.php allows an unauthorized perso
CriticalCVSS 9.8No exploitEPSS 3%monitorr · monitorrApr 12, 2021
- CVE-2023-2677624Monitor
Cross Site Scripting vulnerability found in Monitorr v.1.7.6 allows a remote attacker to execute arbitrary code via the title parameter of t
MediumCVSS 6.1No exploitEPSS 1%monitorr · monitorrApr 4, 2023
- CVE-2025-70604Monitor
Monitorr Installer mkdbajax.php input validation
LowCVSS 1.2No exploitEPSS 0%monitorr · monitorrJul 4, 2025