← Back

Openteknik

openteknik

6 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Openteknik
1Open Source Social Network
Jun 17, 2026
Jul 25, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an HTML injection vulnerability via the location parameter at http://ip_address/:port/ossn/home.
1Openteknik
1Open Source Social Network
Jun 17, 2026
Jul 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Group Timeline module.
1Openteknik
1Open Source Social Network
Jun 17, 2026
Jul 25, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer. This vulnerability allows attackers to execute...Show more
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file. Note: The project owner believes this is intended behavior of the application as it only allows authenticated admins to upload files.Show less
1Openteknik
1Open Source Social Network
Jun 17, 2026
Jul 25, 2022
N/A· v4
4.8 MEDIUM· v3
N/A· v2
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the SitePages module.
1Openteknik
1Open Source Social Network
Jun 17, 2026
Jul 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the News Feed module.
1Openteknik
1Open Source Social Network
Jun 17, 2026
Jul 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Users Timeline module.