Vulnerabilities
3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2019-7747 +1 in the same advisory: …7748 | DbNinja 3.2.7 allows session fixation via the data.php sessid parameter. DbNinja 3.2.7 allows session fixation via the data.php sessid parameter. NVD description · AI analysis pending | 9.6 group max | 1% | PoC |
| — | |
| CVE-2019-7545 | In DbNinja 3.2.7, the Add Host function of the Manage Hosts pages has a Stored Cross-site Scripting (XSS) vulnerability in the User Name field. In DbNinja 3.2.7, the Add Host function of the Manage Hosts pages has a Stored Cross-site Scripting (XSS) vulnerability in the User Name field. NVD description · AI analysis pending | 5.4 | <1% | PoC |
| — |