Skip to content
Noroxi

opencode records

6 published records for vendor opencode.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • OpenCode Systems USSD Gateway OC Release: 5 Version 6.13.11 was discovered to contain a SQL injection vulnerability via the ID parameter in

    CriticalCVSS 9.8No exploitEPSS 0%

    opencode · ussd gatewayNov 26, 2025

  • OpenCode Systems USSD Gateway OC Release: 5 was discovered to contain a SQL injection vulnerability via the Session ID parameter in the /occ

    CriticalCVSS 9.8No exploitEPSS 0%

    opencode · ussd gatewayNov 26, 2025

  • OpenCode Systems OC Messaging / USSD Gateway OC Release 6.32.2 contains a broken access control vulnerability in the web-based control panel

    HighCVSS 8.1No exploitEPSS 0%

    opencode · ussd gatewayMar 5, 2026

  • Incorrect access control in the getSubUsersByProvider function of OpenCode Systems USSD Gateway OC Release: 5 Version 6.13.11 allows attacke

    MediumCVSS 6.5No exploitEPSS 0%

    opencode · ussd gatewayNov 26, 2025

  • A reflected cross-site scripted (XSS) vulnerability in OpenCode Systems USSD Gateway OC Release: 5 allows attackers to execute arbitrary Jav

    MediumCVSS 6.1No exploitEPSS 0%

    opencode · ussd gatewayNov 26, 2025

  • Incorrect access control in the /aux1/ocussd/trace endpoint of OpenCode Systems USSD Gateway OC Release:5, version 6.13.11 allows attackers

    MediumCVSS 4.3No exploitEPSS 0%

    opencode · ussd gatewayNov 26, 2025