Vulnerabilities
3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2019-20484 +1 in the same advisory: …20483 | An issue was discovered in Viki Vera 4.9.1.26180. An issue was discovered in Viki Vera 4.9.1.26180. A user without access to a project could download or upload project files by opening the Project URL directly in the browser after logging in. NVD description · AI analysis pending | 8.1 group max | <1% | PoC |
| — | |
| CVE-2019-15123 | The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. An attacker could use this to upload a malicious .aspx file and gain Remote Code Execution on the site. NVD description · AI analysis pending | 7.2 | 2% |
| — |