Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
web2py web2py vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2016-3953
The sample web application in web2py prior to 2.14.2 might allow remote malicious users to execute arbitrary code via vectors involving use of a hardcoded encryption key when calling the session.connect function.
Web2py Web2py
5
CVSSv2
CVE-2016-4806
Web2py versions 2.14.5 and below was affected by Local File Inclusion vulnerability, which allows a malicious intended user to read/access web server sensitive files.
Web2py Web2py
1 EDB exploit
5.8
CVSSv2
CVE-2015-6961
Open redirect vulnerability in gluon/tools.py in Web2py 2.9.11 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the _next parameter to user/logout.
Web2py Web2py 2.9.11
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3380
CVE-2024-1694
local file inclusion
CVE-2024-5645
CVE-2024-24919
XSS
CVE-2024-36774
CVE-2024-21306
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2