ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2019-7747
+1 in the same advisory: …7748
DbNinja 3.2.7 allows session fixation via the data.php sessid parameter.

DbNinja 3.2.7 allows session fixation via the data.php sessid parameter.

NVD description · AI analysis pending
9.6
group max
1% PoC
  • dbninja dbninja
CVE-2019-7545
In DbNinja 3.2.7, the Add Host function of the Manage Hosts pages has a Stored Cross-site Scripting (XSS) vulnerability in the User Name field.

In DbNinja 3.2.7, the Add Host function of the Manage Hosts pages has a Stored Cross-site Scripting (XSS) vulnerability in the User Name field.

NVD description · AI analysis pending
5.4<1% PoC
  • dbninja dbninja