RSS   Vulnerabilities for 'Cgi an-anlyzer'   RSS

2020-01-06
 
CVE-2019-5990

CWE-522
 

 
Access analysis CGI An-Analyzer released in 2019 June 24 and earlier allow remote attackers to obtain a login password via HTTP referer.

 
 
CVE-2019-5989

CWE-79
 

 
DOM-based cross-site scripting vulnerability in Access analysis CGI An-Analyzer released in 2019 June 24 and earlier allows remote attackers to inject arbitrary web script or HTML via the Analysis Object Page.

 
 
CVE-2019-5988

CWE-79
 

 
Stored cross-site scripting vulnerability in Access analysis CGI An-Analyzer released in 2019 June 24 and earlier allows remote attackers to inject arbitrary web script or HTML via the Management Page.

 
 
CVE-2019-5987

CWE-78
 

 
Access analysis CGI An-Analyzer released in 2019 June 24 and earlier allows remote authenticated attackers to execute arbitrary OS commands via the Management Page.

 


Copyright 2024, cxsecurity.com

 

Back to Top