« Volver al listado

Autolabproject

Autolabproject Autolab: vulnerabilidades y CVE

Autolabproject Autolab tiene 11 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE11
Últimos 12 meses0
Críticas0
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2024-53260Media (6.8)0.47%—27 nov 2024
Autolab is a course management service that enables auto-graded programming assignments. A user can modify their first and or last name to include a valid excel / spreadsheet formula. When an instructor downloads their…
CVE-2024-53258Alta (7.1)0.47%—25 nov 2024
Autolab is a course management service that enables auto-graded programming assignments. From Autolab versions v.3.0.0 onward students can download all assignments from another student, as long as they are logged in,…
CVE-2024-52585Baja (1.2)0.26%—18 nov 2024
Autolab is a course management service that enables auto-graded programming assignments. There is an HTML injection vulnerability in version 3.0.1 that can affect instructors and CAs on the grade submissions page. The…
CVE-2024-52584Media (4.9)0.25%—18 nov 2024
Autolab is a course management service that enables auto-graded programming assignments. There is a vulnerability in version 3.0.1 where CAs can view or edit the grade for any submission ID, even if they are not a CA…
CVE-2024-49376Alta (7.1)0.47%—25 oct 2024
Autolab, a course management service that enables auto-graded programming assignments, has misconfigured reset password permissions in version 3.0.0. For email-based accounts, users with insufficient privileges could…
CVE-2023-44395Media (6.5)0.60%—22 ene 2024
Autolab is a course management service that enables instructors to offer autograded programming assignments to their students over the Web. Path traversal vulnerabilities were discovered in Autolab's assessment…
CVE-2023-32676Alta (7.2)0.91%—26 may 2023
Autolab is a course management service that enables auto-graded programming assignments. A Tar slip vulnerability was found in the Install assessment functionality of Autolab. To exploit this vulnerability an…
CVE-2023-32317Alta (7.2)0.89%—26 may 2023
Autolab is a course management service that enables auto-graded programming assignments. A Tar slip vulnerability was found in the MOSS cheat checker functionality of Autolab. To exploit this vulnerability an…
CVE-2022-41956Media (6.5)1.8%—14 ene 2023
Autolab is a course management service, initially developed by a team of students at Carnegie Mellon University, that enables instructors to offer autograded programming assignments to their students over the Web. A…
CVE-2022-41955Alta (8.8)1.5%—14 ene 2023
Autolab is a course management service, initially developed by a team of students at Carnegie Mellon University, that enables instructors to offer autograded programming assignments to their students over the Web. A…
CVE-2022-0936Media (5.4)0.66%—11 abr 2022
Cross-site Scripting (XSS) - Stored in GitHub repository autolab/autolab prior to 2.8.0.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1210 Exploitation of Remote Services2
  2. T1005 Data from Local System1
  3. T1078 Valid Accounts1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.