← Back

Monox

monox

Vendor: Mono • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mono
1Monox
Nov 21, 2024
Apr 29, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of deserialization in ModuleGallery.HTML5Upload, ModuleGallery.SilverLightUploadMo...Show more
MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of deserialization in ModuleGallery.HTML5Upload, ModuleGallery.SilverLightUploadModule, HTML5Upload, and SilverLightUploadHandler.Show less
1Mono
1Monox
Nov 21, 2024
Apr 29, 2020
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
MonoX through 5.1.40.5152 allows administrators to execute arbitrary code by modifying an ASPX template.
1Mono
1Monox
Nov 21, 2024
Apr 29, 2020
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
MonoX through 5.1.40.5152 allows admins to execute arbitrary programs by reconfiguring the Converter Executable setting from ffmpeg.exe to a different program.
1Mono
1Monox
Nov 21, 2024
Apr 29, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
MonoX through 5.1.40.5152 allows stored XSS via User Status, Blog Comments, or Blog Description.