Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
quorum vulnerabilities and exploits
(subscribe to this query)
5.4
CVSSv3
CVE-2021-37463
In NCH Quorum v2.03 and previous versions, XSS exists via User Display Name (stored).
Nchsoftware Quorum
5.4
CVSSv3
CVE-2021-37464
In NCH Quorum v2.03 and previous versions, XSS exists via Conference Description (stored).
Nchsoftware Quorum
5.4
CVSSv3
CVE-2021-37465
In NCH Quorum v2.03 and previous versions, XSS exists via /uploaddoc?id= (reflected).
Nchsoftware Quorum
5.4
CVSSv3
CVE-2021-37466
In NCH Quorum v2.03 and previous versions, XSS exists via /conference?id= (reflected).
Nchsoftware Quorum
5.4
CVSSv3
CVE-2021-37467
In NCH Quorum v2.03 and previous versions, XSS exists via /conferencebrowseuploadfile?confid= (reflected).
Nchsoftware Quorum
4.3
CVSSv3
CVE-2021-37446
In NCH Quorum v2.03 and previous versions, an authenticated user can use directory traversal via documentprop?file=/.. for file reading.
Nchsoftware Quorum
5.5
CVSSv3
CVE-2021-37452
NCH Quorum v2.03 and previous versions allows local users to discover cleartext login information relating to users by reading the local .dat configuration files.
Nch Quorum
6.5
CVSSv3
CVE-2021-37445
In NCH Quorum v2.03 and previous versions, an authenticated user can use directory traversal via logprop?file=/.. for file reading.
Nchsoftware Quorum
8.1
CVSSv3
CVE-2021-37447
In NCH Quorum v2.03 and previous versions, an authenticated user can use directory traversal via documentdelete?file=/.. for file deletion.
Nchsoftware Quorum
7.5
CVSSv3
CVE-2018-8012
No authentication/authorization is enforced when a server attempts to join a quorum in Apache ZooKeeper prior to 3.4.10, and 3.5.0-alpha up to and including 3.5.3-beta. As a result an arbitrary end point could join the cluster and begin propagating counterfeit changes to the lead...
Apache Zookeeper 3.5.3
Apache Zookeeper 3.5.0
Apache Zookeeper
Debian Debian Linux 8.0
Debian Debian Linux 9.0
Oracle Goldengate Stream Analytics
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »