« Volver al listado

Iblsoft

Iblsoft Online Weather: vulnerabilidades y CVE

Iblsoft Online Weather tiene 3 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE3
Últimos 12 meses0
Críticas1
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2020-9407Media (5.3)0.52%—26 feb 2020
IBL Online Weather before 4.3.5a allows attackers to obtain sensitive information by reading the IWEBSERVICE_JSONRPC_COOKIE cookie.
CVE-2020-9406Crítica (9.8)1.2%—26 feb 2020
IBL Online Weather before 4.3.5a allows unauthenticated eval injection via the queryBCP method of the Auxiliary Service.
CVE-2020-9405Media (6.1)0.61%—26 feb 2020
IBL Online Weather before 4.3.5a allows unauthenticated reflected XSS via the redirect page.