Known Vulnerabilities for Flamingo by Exadel
Listed below are 2 of the newest known vulnerabilities associated with "Flamingo" by "Exadel".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-61498 json | Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/gen_graphs.php endpoin... | Not Provided | 2026-07-13 | 2026-07-14 |
| CVE-2026-60121 json | Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/ping.php endpoint that... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2023-52226 json | Cross-Site Request Forgery (CSRF) vulnerability in Advanced Flamingo.This issue affects Advanced Flamingo: from n/a through 1... | Not Provided | 2024-02-28 | 2026-04-28 |
| CVE-2017-3206 json | The Java implementation of AMF3 deserializers used by Flamingo amf-serializer by Exadel, version 2.2.0, allows external entit... | 9.8 - CRITICAL | 2018-06-11 | 2019-10-09 |
| CVE-2017-3202 json | The Java implementation of AMF3 deserializers used in Flamingo amf-serializer by Exadel, version 2.2.0, may allow instantiati... | 9.8 - CRITICAL | 2018-06-11 | 2019-10-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Exadel | Flamingo | 2.2.0 |