Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Creosote

#18867de 53,633
14.2CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2019-14403
8.8
2019-09-04
Sentrifugo · Sentrifugo · CVE-2019-15813
**Name of the Vulnerable Software and Affected Versions** Sentrifugo version 3.2 **Description** The issue allows authenticated users to bypass multiple file upload restrictions, potentially enabling them to execute arbitrary code via a webshell. **Recommendations** For Sentrifugo version 3.2, update to a version that includes a fix for this issue, as the current version allows authenticated users to bypass file upload restrictions and potentially execute arbitrary code. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2019-14404
5.4
2019-09-04
Sentrifugo · Sentrifugo · CVE-2019-15814
**Name of the Vulnerable Software and Affected Versions** Sentrifugo version 3.2 **Description** The issue concerns multiple stored XSS vulnerabilities. These vulnerabilities could allow authenticated users to inject arbitrary web script or HTML. **Recommendations** For Sentrifugo version 3.2, update to a version that includes a fix for the stored XSS vulnerabilities. At the moment, there is no information about a newer version that contains a fix for this vulnerability.