Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ez ez publish vulnerabilities and exploits
(subscribe to this query)
685
VMScore
CVE-2003-0310
Cross-site scripting (XSS) vulnerability in articleview.php for eZ publish 2.2 allows remote malicious users to insert arbitrary web script.
Ez Ez Publish 2.2
1 EDB exploit
NA
CVE-2015-10071
A vulnerability was found in gitter-badger ezpublish-modern-legacy. It has been rated as problematic. This issue affects some unknown processing of the file kernel/user/forgotpassword.php. The manipulation leads to weak password recovery. The complexity of an attack is rather hig...
Gitter Ez Publish Modern Legacy
668
VMScore
CVE-2007-5115
Multiple PHP remote file inclusion vulnerabilities in Ekke Doerre Contenido 42VariablVersion (42VV10) in contenido_hacks in Mods 4 Xoops Contenido eZ publish (pdf4cms) allow remote malicious users to execute arbitrary PHP code via a URL in the cfgPathInc parameter to (1) main_upl...
Ekke Doerre Mods 4 Xoops Contenido Ez Publish
265
VMScore
CVE-2012-1597
Cross-site scripting (XSS) vulnerability in the textEncode function in classes/ezjscajaxcontent.php in eZ JS Core in eZ Publish prior to 1.5 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Ez Ezjscore 1.0
Ez Ezjscore
1 EDB exploit
NA
CVE-2021-46876
An issue exists in eZ Publish Ibexa Kernel prior to 7.5.15.1. The /user/sessions endpoint can be abused to determine account existence.
Ibexa Ez Platform Kernel
NA
CVE-2022-48367
An issue exists in eZ Publish Ibexa Kernel prior to 7.5.28. Access control based on object state is mishandled.
Ibexa Kernel
Ibexa Digital Experience Platform
Ibexa Ez Platform Kernel
Ibexa Fastly
Ibexa Ezplatform-http-cache-fastly
NA
CVE-2020-23065
Cross Site Scripting vulnerabiltiy in eZ Systems AS eZPublish Platform v.5.4 and eZ Publish Legacy v.5.4 allows a remote authenticated malicious user to execute arbitrary code via the video-js.swf.
Ibexa Ezpublish Legacy 5.4
Ibexa Ezpublish Platform 5.4
668
VMScore
CVE-2014-2552
Brookins Consulting (BC) Collected Information Export extension for eZ Publish 1.1.0 does not properly restrict access, which allows remote malicious users to gain access to sensitive data.
Brookinsconsulting Collected Information Export 1.1.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5834
CVE-2024-30100
CVE-2024-4577
physical
dos
CVE-2024-30099
CVE-2024-27801
CVE-2024-32146
logic flaw
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3