Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Kbvault Mysql Project Subscribe
Filtered by product Kbvault Mysql
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-9602 1 Kbvault Mysql Project 1 Kbvault Mysql 2020-01-24 7.5 HIGH 9.8 CRITICAL
KBVault Mysql Free Knowledge Base application package 0.16a comes with a FileExplorer/Explorer.aspx?id=/Uploads file-management component. An unauthenticated user can access the file upload and deletion functionality. Through this functionality, a user can upload an ASPX script to Uploads/Documents/ to run any arbitrary code.