Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
lite vulnerabilities and exploits
(subscribe to this query)
668
VMScore
CVE-2005-0302
SQL injection vulnerability in default.asp in BackOffice Lite 6.0 and 6.01 allows remote malicious users to execute arbitrary SQL commands via the referer field in the HTTP header.
Comersus Open Technologies Comersus Backoffice Lite 6.1
Comersus Open Technologies Comersus Backoffice Lite 6.0
940
VMScore
CVE-2008-4499
Multiple directory traversal vulnerabilities in PHP Web Explorer 0.99b and previous versions allow remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the (1) refer parameter to main.php and the (2) file parameter to edit.php.
Php Web Explorer Php Web Explorer Lite 0.99a
Php Web Explorer Php Web Explorer Lite
2 EDB exploits
383
VMScore
CVE-2015-9408
The xpinner-lite plugin up to and including 2.2 for WordPress has wp-admin/options-general.php CSRF with resultant XSS.
Cyberseo Xpinner Lite
383
VMScore
CVE-2020-17362
search.php in the Nova Lite theme prior to 1.3.9 for WordPress allows Reflected XSS.
Themeinprogress Nova Lite
515
VMScore
CVE-2006-4291
PHP remote file inclusion vulnerability in handlers/email/mod.listmail.php in PHlyMail Lite 3.4.4 and previous versions (Build 3.04.04) allows remote malicious users to execute arbitrary PHP code via a URL in the _PM_[path][handler] parameter.
Phlymail Phlymail Lite
1 EDB exploit
NA
CVE-2023-3423
Weak Password Requirements in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v 1.2.0.
Fit2cloud Cloudexplorer Lite
NA
CVE-2023-34240
Cloudexplorer-lite is an open source cloud software stack. Weak passwords can be easily guessed and are an easy target for brute force attacks. This can lead to an authentication system failure and compromise system security. Versions of cloudexplorer-lite before 1.2.0 did not en...
Fit2cloud Cloudexplorer Lite
NA
CVE-2023-45006
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ByConsole WooODT Lite – WooCommerce Order Delivery or Pickup with Date Time Location plugin <= 2.4.6 versions.
Byconsole Wooodt Lite
383
VMScore
CVE-2019-5286
There is a reflection XSS vulnerability in the HedEx products. Remote attackers send malicious links to users and trick users to click. Successfully exploit cloud allow the malicious user to initiate XSS attacks. Affects HedEx Lite versions earlier than V200R006C00SPC007.
Huawei Hedex Lite
NA
CVE-2023-44397
CloudExplorer Lite is an open source, lightweight cloud management platform. Prior to version 1.4.1, the gateway filter of CloudExplorer Lite uses a controller with path starting with `matching/API/`, which can cause a permission bypass. Version 1.4.1 contains a patch for this is...
Fit2cloud Cloudexplorer Lite
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »