Show filters
62 Total Results
Displaying 11-20 of 62
Sort by:
Attacker Value
Unknown

CVE-2023-41564

Disclosure Date: September 08, 2023 (last updated October 08, 2023)
An arbitrary file upload vulnerability in the Upload Asset function of Cockpit CMS v2.6.3 allows attackers to execute arbitrary code via uploading a crafted .shtml file.
Attacker Value
Unknown

CVE-2023-4451

Disclosure Date: August 20, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Reflected in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
Attacker Value
Unknown

CVE-2023-4433

Disclosure Date: August 19, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
Attacker Value
Unknown

CVE-2023-4432

Disclosure Date: August 19, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Reflected in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
Attacker Value
Unknown

CVE-2023-4422

Disclosure Date: August 18, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.3.
Attacker Value
Unknown

CVE-2023-4395

Disclosure Date: August 17, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
Attacker Value
Unknown

CVE-2023-4321

Disclosure Date: August 14, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.4.3.
Attacker Value
Unknown

CVE-2023-4196

Disclosure Date: August 06, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.3.
Attacker Value
Unknown

CVE-2023-4195

Disclosure Date: August 06, 2023 (last updated October 08, 2023)
PHP Remote File Inclusion in GitHub repository cockpit-hq/cockpit prior to 2.6.3.
Attacker Value
Unknown

CVE-2023-37650

Disclosure Date: July 20, 2023 (last updated October 08, 2023)
A Cross-Site Request Forgery (CSRF) in the Admin portal of Cockpit CMS v2.5.2 allows attackers to execute arbitrary Administrator commands.