Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2022-34966

Disclosure Date: July 25, 2022 (last updated October 07, 2023)
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an HTML injection vulnerability via the location parameter at http://ip_address/:port/ossn/home.
Attacker Value
Unknown

CVE-2022-34962

Disclosure Date: July 25, 2022 (last updated October 07, 2023)
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Group Timeline module.
Attacker Value
Unknown

CVE-2022-34965

Disclosure Date: July 25, 2022 (last updated May 04, 2024)
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file. Note: The project owner believes this is intended behavior of the application as it only allows authenticated admins to upload files.
Attacker Value
Unknown

CVE-2022-34964

Disclosure Date: July 25, 2022 (last updated October 07, 2023)
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the SitePages module.
Attacker Value
Unknown

CVE-2022-34963

Disclosure Date: July 25, 2022 (last updated October 07, 2023)
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the News Feed module.
Attacker Value
Unknown

CVE-2022-34961

Disclosure Date: July 25, 2022 (last updated October 07, 2023)
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Users Timeline module.