Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
expressionengine expressionengine 3.4.2 vulnerabilities and exploits
(subscribe to this query)
312
VMScore
CVE-2017-1000160
EllisLab ExpressionEngine 3.4.2 is vulnerable to cross-site scripting resulting in PHP code injection
Expressionengine Expressionengine 3.4.2
445
VMScore
CVE-2017-0897
ExpressionEngine version 2.x < 2.11.8 and version 3.x < 3.5.5 create an object signing token with weak entropy. Successfully guessing the token can lead to remote code execution.
Expressionengine Expressionengine 3.5.1
Expressionengine Expressionengine 3.4.7
Expressionengine Expressionengine 3.4.0
Expressionengine Expressionengine 3.3.3
Expressionengine Expressionengine 3.1.3
Expressionengine Expressionengine 3.1.1
Expressionengine Expressionengine 3.0.3
Expressionengine Expressionengine 3.0.1
Expressionengine Expressionengine 2.11.2
Expressionengine Expressionengine 2.11.0
Expressionengine Expressionengine 2.9.1
Expressionengine Expressionengine 2.8.1
Expressionengine Expressionengine 2.7.0
Expressionengine Expressionengine 3.4.5
Expressionengine Expressionengine 3.4.4
Expressionengine Expressionengine 3.4.3
Expressionengine Expressionengine 3.4.2
Expressionengine Expressionengine 3.1.0
Expressionengine Expressionengine 3.0.6
Expressionengine Expressionengine 3.0.5
Expressionengine Expressionengine 3.0.4
Expressionengine Expressionengine 2.10.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
hard-coded
CVE-2024-27202
NULL pointer dereference
CVE-2024-28075
CVE-2024-33608
CVE-2024-28889
CVE-2024-34572
template injection
CVE-2024-34351
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started