RSS   Vulnerabilities for 'Teleport'   RSS

2018-11-26
 
CVE-2018-19555

CWE-352
 

 
tp4a TELEPORT 3.1.0 has CSRF via user/do-reset-password to change any password, such as the administrator password.

 
2018-11-15
 
CVE-2018-19301

CWE-79
 

 
tp4a TELEPORT 3.1.0 allows XSS via the login page because a crafted username is mishandled when an administrator later views the system log.

 


Copyright 2024, cxsecurity.com

 

Back to Top