Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vanderbilt redcap vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2012-6564
Cross-site scripting (XSS) vulnerability in REDCap prior to 4.14.5 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Vanderbilt Redcap
Vanderbilt Redcap 4.14.3
Vanderbilt Redcap 4.14.2
Vanderbilt Redcap 4.14.1
Vanderbilt Redcap 4.14.0
NA
CVE-2012-6565
Cross-site scripting (XSS) vulnerability in REDCap prior to 4.14.3 allows remote authenticated users to inject arbitrary web script or HTML via uppercase characters in JavaScript events within user-defined labels.
Vanderbilt Redcap 4.14.1
Vanderbilt Redcap
Vanderbilt Redcap 4.14.0
NA
CVE-2013-4608
Cross-site scripting (XSS) vulnerability in REDCap prior to 5.0.6 allows remote malicious users to inject arbitrary web script or HTML via vectors involving the Graphical Data View & Descriptive Stats page.
Project-redcap Redcap 5.0.1
Project-redcap Redcap 4.14.6
Project-redcap Redcap 4.15.0
Project-redcap Redcap 4.15.2
Project-redcap Redcap 5.0.4
Project-redcap Redcap 5.0.3
Project-redcap Redcap 4.15.3
Project-redcap Redcap 4.15.4
Vanderbilt Redcap 4.14.4
Vanderbilt Redcap 4.14.3
Vanderbilt Redcap 4.14.2
Vanderbilt Redcap 4.14.1
Project-redcap Redcap 4.13.18
Vanderbilt Redcap
Project-redcap Redcap 5.0.2
Project-redcap Redcap 5.0.0
Project-redcap Redcap 4.14.5
Vanderbilt Redcap 4.14.0
Project-redcap Redcap 4.15.1
NA
CVE-2013-4610
Unspecified vulnerability in the Data Search utility in data-entry forms in REDCap prior to 5.0.3 and 5.1.x prior to 5.1.2 has unknown impact and remote attack vectors.
Project-redcap Redcap 5.0.0
Project-redcap Redcap 4.14.5
Project-redcap Redcap 4.15.1
Project-redcap Redcap 4.15.3
Project-redcap Redcap 5.1.1
Project-redcap Redcap 4.15.4
Project-redcap Redcap 4.13.18
Project-redcap Redcap 5.0.6
Project-redcap Redcap 5.1.0
Vanderbilt Redcap 4.14.4
Vanderbilt Redcap 4.14.3
Vanderbilt Redcap 4.14.2
Vanderbilt Redcap 4.14.1
Vanderbilt Redcap 4.14.0
Project-redcap Redcap 5.0.1
Project-redcap Redcap 4.14.6
Project-redcap Redcap 4.15.0
Project-redcap Redcap 4.15.2
Vanderbilt Redcap
NA
CVE-2013-4609
REDCap prior to 5.0.4 and 5.1.x prior to 5.1.3 does not reject certain undocumented syntax within branching logic and calculations, which allows remote authenticated users to bypass intended access restrictions via (1) the Online Designer or (2) the Data Dictionary upload, as dem...
Project-redcap Redcap 5.0.0
Project-redcap Redcap 4.14.5
Vanderbilt Redcap 4.14.0
Project-redcap Redcap 4.15.1
Project-redcap Redcap 4.15.3
Project-redcap Redcap 5.1.2
Project-redcap Redcap 5.0.2
Project-redcap Redcap 4.15.4
Project-redcap Redcap 4.13.18
Vanderbilt Redcap
Project-redcap Redcap 5.1.1
Vanderbilt Redcap 4.14.4
Vanderbilt Redcap 4.14.3
Vanderbilt Redcap 4.14.2
Vanderbilt Redcap 4.14.1
Project-redcap Redcap 5.0.1
Project-redcap Redcap 4.14.6
Project-redcap Redcap 4.15.0
Project-redcap Redcap 4.15.2
Project-redcap Redcap 5.1.0
NA
CVE-2013-4612
Multiple cross-site scripting (XSS) vulnerabilities in REDCap prior to 5.1.0 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors involving different modules.
Project-redcap Redcap 5.0.0
Project-redcap Redcap 4.14.5
Vanderbilt Redcap 4.14.0
Project-redcap Redcap 4.15.1
Project-redcap Redcap 5.0.5
Project-redcap Redcap 5.0.4
Project-redcap Redcap 5.0.3
Project-redcap Redcap 5.0.2
Project-redcap Redcap 4.15.3
Project-redcap Redcap 4.15.4
Project-redcap Redcap 4.13.18
Vanderbilt Redcap 4.14.4
Vanderbilt Redcap 4.14.3
Vanderbilt Redcap 4.14.2
Vanderbilt Redcap 4.14.1
Vanderbilt Redcap
Project-redcap Redcap 5.0.1
Project-redcap Redcap 4.14.6
Project-redcap Redcap 4.15.0
Project-redcap Redcap 4.15.2
NA
CVE-2012-6566
Cross-site scripting (XSS) vulnerability in REDCap prior to 4.14.2 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Vanderbilt Redcap
Vanderbilt Redcap 4.14.0
NA
CVE-2013-4611
Multiple unspecified vulnerabilities in REDCap prior to 5.1.1 allow remote malicious users to have an unknown impact via vectors involving (1) the Online Designer page or (2) the Manage Survey Participants page.
Project-redcap Redcap 5.0.1
Project-redcap Redcap 4.14.6
Vanderbilt Redcap 4.14.1
Project-redcap Redcap 4.15.0
Project-redcap Redcap 4.15.2
Vanderbilt Redcap
Project-redcap Redcap 4.14.5
Vanderbilt Redcap 4.14.4
Vanderbilt Redcap 4.14.3
Vanderbilt Redcap 4.14.2
Project-redcap Redcap 5.0.5
Project-redcap Redcap 5.0.4
Project-redcap Redcap 5.0.3
Project-redcap Redcap 4.15.3
Project-redcap Redcap 4.15.4
Project-redcap Redcap 4.13.18
Project-redcap Redcap 5.0.6
Project-redcap Redcap 5.0.2
Project-redcap Redcap 5.0.0
Vanderbilt Redcap 4.14.0
Project-redcap Redcap 4.15.1
9.8
CVSSv3
CVE-2020-26712
REDCap 10.3.4 contains a SQL injection vulnerability in the ToDoList function via sort parameter. The application uses the addition of a string of information from the submitted user that is not validated well in the database query, resulting in an SQL injection vulnerability whe...
Vanderbilt Redcap 10.0.20
Vanderbilt Redcap 10.3.4
6.1
CVSSv3
CVE-2020-26713
REDCap 10.3.4 contains a XSS vulnerability in the ToDoList function with parameter sort. The information submitted by the user is immediately returned in the response and not escaped leading to the reflected XSS vulnerability. Attackers can exploit vulnerabilities to steal login ...
Vanderbilt Redcap 10.0.20
Vanderbilt Redcap 10.3.4
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »