Vulnerabilities
3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2019-18418 +1 in the same advisory: …18419 | clonos.php in ClonOS WEB control panel 19.09 allows remote attackers to gain full access via change password requests because there is no session management. clonos.php in ClonOS WEB control panel 19.09 allows remote attackers to gain full access via change password requests because there is no session management. NVD description · AI analysis pending | 9.8 group max | 4% | PoC |
| — | |
| CVE-2019-15571 | The WEB control panel before 2019-04-30 for ClonOS allows SQL injection in clonos.php. The WEB control panel before 2019-04-30 for ClonOS allows SQL injection in clonos.php. NVD description · AI analysis pending | 9.8 | 1% |
| — |