Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
pearadmin pear admin think vulnerabilities and exploits
(subscribe to this query)
5.4
CVSSv3
CVE-2022-23903
A Cross Site Scripting (XSS) vulnerability exists in pearadmin pear-admin-think <=5.0.6, which allows a login account to access arbitrary functions and cause stored XSS through a fake User-Agent.
Pearadmin Pear Admin Think
8.8
CVSSv3
CVE-2021-29378
SQL Injection in pear-admin-think version 2.1.2, allows malicious users to execute arbitrary code and escalate privileges via crafted GET request to Crud.php.
Pearadmin Pear Admin Think 2.1.2
9.8
CVSSv3
CVE-2021-29377
Pear Admin Think up to and including 2.1.2 has an arbitrary file upload vulnerability that allows malicious users to execute arbitrary code remotely. A .php file can be uploaded via admin.php/index/upload because app/common/service/UploadService.php mishandles fileExt.
Pearadmin Pearadmin Think
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4956
validation
CVE-2024-35221
remote attackers
CVE-2023-30309
CVE-2024-36112
CVE-2024-23109
CVE-2023-43850
stored XSS
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started