Vulnerabilities
4 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2024-38971 +1 in the same advisory: …38970 | vaeThink 1.0.2 is vulnerable to stored Cross Site Scripting (XSS) in the system backend. vaeThink 1.0.2 is vulnerable to stored Cross Site Scripting (XSS) in the system backend. NVD description · AI analysis pending | 5.4 group max | <1% |
| — | ||
| CVE-2020-19301 +1 in the same advisory: …19302 | A vulnerability in the vae_admin_rule database table of vaeThink v1.0.1 allows attackers to execute arbitrary code via a crafted payload in the condition parame A vulnerability in the vae_admin_rule database table of vaeThink v1.0.1 allows attackers to execute arbitrary code via a crafted payload in the condition parameter. NVD description · AI analysis pending | 9.8 | 3% | PoC |
| — |