Known Vulnerabilities for Bitrix by Bitrix Project
Listed below are 1 of the newest known vulnerabilities associated with "Bitrix" by "Bitrix Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-67887 json | 1C-Bitrix through 25.100.500 allows Remote Code Execution because an actor with SOURCE/WRITE permissions for the Translate Mo... | Not Provided | 2026-05-08 | 2026-05-11 |
| CVE-2024-34891 json | Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to ... | Not Provided | 2024-11-04 | 2026-07-05 |
| CVE-2024-34887 json | Insufficiently protected credentials in AD/LDAP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators... | Not Provided | 2024-11-04 | 2026-07-05 |
| CVE-2024-34885 json | Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to... | Not Provided | 2024-11-04 | 2026-07-05 |
| CVE-2024-34883 json | Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allow remote administrators to r... | Not Provided | 2024-11-04 | 2026-07-05 |
| CVE-2024-34882 json | Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to... | Not Provided | 2024-11-04 | 2026-07-05 |
| CVE-2015-8356 json | Not Provided | 2017-04-14 | 2025-04-20 |