Status
status
8 CVEs • 3 products
Products (3)
Click to collapseToggle
Products (3)
Click to collapse
CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
It is identified a vulnerability of insufficient authentication in an important specific function of Status PowerBPM. A LAN attacker with normal user privilege can exploit this vulnerability to modify substitute agent to...Show more |
statusnet through 2010 allows attackers to spoof syslog messages via newline injection attacks. |
Cross-site scripting (XSS) vulnerability in statusnet through 2010 in error message contents. |
Unspecified vulnerability in statusnet through 2010 due to the way addslashes are used in SQL string escapes.. |
statusnet before 0.9.9 has XSS |
1Status 1React Native Desktop Jun 17, 2026 Jul 23, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 ubuntu-server.js in Status React Native Desktop before v0.57.8_mobile_ui allows Remote Code Execution. |
Multiple SQL injection vulnerabilities in StatusNet 1.0 before 1.0.2 and 1.1.0 allow remote attackers to execute arbitrary SQL commands via vectors related to user lists and "a particular tag format." |
StatusNet 0.9.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by tpl/index.php and certain other fil...Show more |