Количество 2
Количество 2
CVE-2022-42745
больше 3 лет назад
CandidATS version 3.0.0 allows an external attacker to read arbitrary files from the server. This is possible because the application is vulnerable to XXE.
CVSS3: 7.5
EPSS: Низкий
GHSA-5x8p-x36c-4gwr
больше 3 лет назад
CandidATS version 3.0.0 allows an external attacker to read arbitrary files from the server. This is possible because the application is vulnerable to XXE.
CVSS3: 7.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-42745 CandidATS version 3.0.0 allows an external attacker to read arbitrary files from the server. This is possible because the application is vulnerable to XXE. | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
GHSA-5x8p-x36c-4gwr CandidATS version 3.0.0 allows an external attacker to read arbitrary files from the server. This is possible because the application is vulnerable to XXE. | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20