LG
LG Simple Editor: vulnerabilities and CVEs
LG Simple Editor has 25 published vulnerabilities, 0 of them in the last 12 months. 13 are rated critical and 0 are listed by CISA as actively exploited.
CVEs25
Last 12 months0
Critical13
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40516 | High (7.8) | 0.25% | — | May 3, 2024 | LG Simple Editor Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of LG Simple Editor. An attacker must… |
| CVE-2023-40515 | High (7.5) | 1.4% | — | May 3, 2024 | LG Simple Editor joinAddUser Improper Input Validation Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of LG Simple Editor.… |
| CVE-2023-40514 | Medium (6.5) | 2.9% | — | May 3, 2024 | LG Simple Editor FileManagerController getImageByFilename Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations… |
| CVE-2023-40513 | Medium (6.5) | 2.9% | — | May 3, 2024 | LG Simple Editor UserManageController getImageByFilename Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations… |
| CVE-2023-40512 | Medium (6.5) | 2.9% | — | May 3, 2024 | LG Simple Editor PlayerController getImageByFilename Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG… |
| CVE-2023-40511 | High (7.5) | 1.4% | — | May 3, 2024 | LG Simple Editor checkServer Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of LG Simple Editor. Authentication is not required to… |
| CVE-2023-40510 | High (7.5) | 1.4% | — | May 3, 2024 | LG Simple Editor getServerSetting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of LG Simple Editor. Authentication is not required to… |
| CVE-2023-40509 | Critical (9.1) | 2.0% | — | May 3, 2024 | LG Simple Editor deleteCanvas Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of LG Simple Editor. Authentication… |
| CVE-2023-40508 | Critical (9.1) | 2.0% | — | May 3, 2024 | LG Simple Editor putCanvasDB Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of LG Simple Editor. Authentication… |
| CVE-2023-40507 | High (7.5) | 1.4% | — | May 3, 2024 | LG Simple Editor copyContent XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG Simple… |
| CVE-2023-40506 | High (7.5) | 1.4% | — | May 3, 2024 | LG Simple Editor copyContent XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG Simple… |
| CVE-2023-40505 | Critical (9.8) | 2.4% | — | May 3, 2024 | LG Simple Editor createThumbnailByMovie Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of LG Simple Editor.… |
| CVE-2023-40504 | Critical (9.8) | 89% | — | May 3, 2024 | LG Simple Editor readVideoInfo Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of LG Simple Editor. Authentication is… |
| CVE-2023-40503 | High (7.5) | 1.4% | — | May 3, 2024 | LG Simple Editor saveXmlFile XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG Simple… |
| CVE-2023-40502 | Critical (9.1) | 83% | — | May 3, 2024 | LG Simple Editor cropImage Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of LG Simple Editor. Authentication is… |
| CVE-2023-40501 | Critical (9.8) | 1.9% | — | May 3, 2024 | LG Simple Editor copyContent Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of LG Simple Editor.… |
| CVE-2023-40500 | Critical (9.8) | 1.9% | — | May 3, 2024 | LG Simple Editor copyContent Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of LG Simple Editor.… |
| CVE-2023-40499 | Critical (9.1) | 2.0% | — | May 3, 2024 | LG Simple Editor mkdir Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of LG Simple Editor. Authentication is not… |
| CVE-2023-40498 | Critical (9.8) | 85% | — | May 3, 2024 | LG Simple Editor cp Command Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of LG Simple Editor. Authentication is… |
| CVE-2023-40497 | Critical (9.8) | 69% | — | May 3, 2024 | LG Simple Editor saveXml Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of LG Simple Editor. Authentication is not… |
| CVE-2023-40496 | High (7.5) | 76% | — | May 3, 2024 | LG Simple Editor copyStickerContent Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG Simple Editor.… |
| CVE-2023-40495 | High (7.5) | 76% | — | May 3, 2024 | LG Simple Editor copyTemplateAll Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG Simple Editor.… |
| CVE-2023-40494 | Critical (9.1) | 83% | — | May 3, 2024 | LG Simple Editor deleteFolder Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of LG Simple Editor. Authentication… |
| CVE-2023-40493 | Critical (9.8) | 2.9% | — | May 3, 2024 | LG Simple Editor copySessionFolder Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of LG Simple Editor.… |
| CVE-2023-40492 | Critical (9.1) | 83% | — | May 3, 2024 | LG Simple Editor deleteCheckSession Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of LG Simple Editor.… |