ZeroHour

Vulnerabilities

21 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2024-51490
Ampache is a web based audio/video streaming application and file manager.

Ampache is a web based audio/video streaming application and file manager. This vulnerability exists in the interface section of the Ampache menu, where users can change "Custom URL - Logo". This section is not properly sanitized, allowing for the input of strings that can execute JavaScript. This issue has been addressed in version 7.0.1 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

NVD description · AI analysis pending
9.0
group max
<1% PoC
  • ampache ampache
CVE-2024-47828
ampache is a web based audio/video streaming application and file manager.

ampache is a web based audio/video streaming application and file manager. A CSRF attack can be performed in order to delete objects (Playlist, smartlist etc.). Cross-Site Request Forgery (CSRF) is an attack that forces authenticated users to submit a request to a Web application against which they are currently authenticated. This vulnerability can be exploited by creating a malicious script with an arbitrary playlist ID belonging to another user. When the user submits the request, their playlist will be deleted. Any User with active sessions who are tricked into submitting a malicious request are impacted, as their playlists or other objects could be deleted without their consent.

NVD description · AI analysis pending
6.5<1% PoC
  • ampache ampache
CVE-2024-47184
Ampache is a web based audio/video streaming application and file manager.

Ampache is a web based audio/video streaming application and file manager. Prior to version 6.6.0, the Democratic Playlist Name is vulnerable to a stored cross-site scripting. Version 6.6.0 fixes this issue.

NVD description · AI analysis pending
4.8<1% PoC
  • ampache ampache
CVE-2024-41665
Ampache, a web based audio/video streaming application and file manager, has a stored cross-site scripting (XSS) vulnerability in versions prior to 6.6.0.

Ampache, a web based audio/video streaming application and file manager, has a stored cross-site scripting (XSS) vulnerability in versions prior to 6.6.0. This vulnerability exists in the "Playlists - Democratic - Configure Democratic Playlist" feature. An attacker with Content Manager permissions can set the Name field to ` `. When any administrator or user accesses the Democratic functionality, they will be affected by this stored XSS vulnerability. The attacker can exploit this vulnerability to obtain the cookies of any user or administrator who accesses the `democratic.php` file. Version 6.6.0 contains a patch for the issue.

NVD description · AI analysis pending
5.4<1% PoC
  • ampache ampache
CVE-2024-28852
+1 in the same advisory: …28853
Ampache is a web based audio/video streaming application and file manager.

Ampache is a web based audio/video streaming application and file manager. Ampache has multiple reflective XSS vulnerabilities,this means that all forms in the Ampache that use `rule` as a variable are not secure. For example, when querying a song, when querying a podcast, we need to use `$rule` variable. This vulnerability is fixed in 6.3.1

NVD description · AI analysis pending
6.1
group max
<1% PoC
  • ampache ampache
CVE-2023-0771
SQL Injection in GitHub repository ampache/ampache prior to 5.5.7,develop.

SQL Injection in GitHub repository ampache/ampache prior to 5.5.7,develop.

NVD description · AI analysis pending
8.8<1% PoC
  • ampache ampache
CVE-2023-0606
Cross-site Scripting (XSS) - Reflected in GitHub repository ampache/ampache prior to 5.5.7.

Cross-site Scripting (XSS) - Reflected in GitHub repository ampache/ampache prior to 5.5.7.

NVD description · AI analysis pending
6.1<1% PoC
  • ampache ampache
CVE-2022-4665
Unrestricted Upload of File with Dangerous Type in GitHub repository ampache/ampache prior to 5.5.6.

Unrestricted Upload of File with Dangerous Type in GitHub repository ampache/ampache prior to 5.5.6.

NVD description · AI analysis pending
8.8<1% PoC
  • ampache ampache
CVE-2021-32644
Ampache is an open source web based audio/video streaming application and file manager.

Ampache is an open source web based audio/video streaming application and file manager. Due to a lack of input filtering versions 4.x.y are vulnerable to code injection in random.php. The attack requires user authentication to access the random.php page unless the site is running in demo mode. This issue has been resolved in 4.4.3.

NVD description · AI analysis pending
5.4<1%
  • ampache ampache
CVE-2020-15153
Ampache before version 4.2.2 allows unauthenticated users to perform SQL injection.

Ampache before version 4.2.2 allows unauthenticated users to perform SQL injection. Refer to the referenced GitHub Security Advisory for details and a workaround. This is fixed in version 4.2.2 and the development branch.

NVD description · AI analysis pending
9.82% PoC
  • ampache ampache
CVE-2021-21399
Ampache is a web based audio/video streaming application and file manager.

Ampache is a web based audio/video streaming application and file manager. Versions prior to 4.4.1 allow unauthenticated access to Ampache using the subsonic API. To successfully make the attack you must use a username that is not part of the site to bypass the auth checks. For more details and workaround guidance see the referenced GitHub security advisory.

NVD description · AI analysis pending
7.51% PoC
  • ampache ampache
CVE-2019-12385
+1 in the same advisory: …12386
An issue was discovered in Ampache through 3.9.1.

An issue was discovered in Ampache through 3.9.1. The search engine is affected by a SQL Injection, so any user able to perform lib/class/search.class.php searches (even guest users) can dump any data contained in the database (sessions, hashed passwords, etc.). This may lead to a full compromise of admin accounts, when combined with the weak password generator algorithm used in the lostpassword functionality.

NVD description · AI analysis pending
8.8
group max
2% PoC
  • ampache ampache
CVE-2017-18375
Ampache 3.8.3 allows PHP Object Instantiation via democratic.ajax.php and democratic.class.php.

Ampache 3.8.3 allows PHP Object Instantiation via democratic.ajax.php and democratic.class.php.

NVD description · AI analysis pending
8.82% PoC
  • ampache ampache