Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
duraspace dspace vulnerabilities and exploits
(subscribe to this query)
9
CVSSv2
CVE-2021-41189
DSpace is an open source turnkey repository application. In version 7.0, any community or collection administrator can escalate their permission up to become system administrator. This vulnerability only exists in 7.0 and does not impact 6.x or below. This issue is patched in ver...
Duraspace Dspace 7.0
5
CVSSv2
CVE-2016-10726
The XMLUI feature in DSpace prior to 3.6, 4.x prior to 4.5, and 5.x prior to 5.5 allows directory traversal via the themes/ path in an attack with two or more arbitrary characters and a colon before a pathname, as demonstrated by a themes/Reference/aa:etc/passwd URI.