Known Vulnerabilities for Ocsreports by OCS Inventory NG
Listed below are 5 of the newest known vulnerabilities associated with "Ocsreports" by "OCS Inventory NG".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76178 json | A stored Cross-Site Scripting (XSS) vulnerability in the notification template functionality of the endpoint /ocsreports/?fun... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-76177 json | Server-Side Request Forgery (SSRF) vulnerability in the /ocsreports/?function=tele_activate endpoint due to insufficient vali... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-76176 json | SQL injection vulnerability in the endpoint /ocsreports/index.php?function=admin_double due to improper processing of the val... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-76175 json | SQL injection vulnerability in the del_check parameter of the /ocsreports/?function=save_query_list endpoint. Input provided ... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-76174 json | Unrestricted file upload vulnerability in the CSV file upload functionality of the Ocsreports admin_info endpoint. The applic... | Not Provided | 2026-09-03 | 2026-09-03 |