Known Vulnerabilities for products from Bumsys Project
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Bumsys Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-2832 json | SQL Injection in GitHub repository unilogies/bumsys prior to 2.2.0. | 7.2 - HIGH | 2023-05-22 | 2023-05-26 |
| CVE-2023-2554 json | External Control of File Name or Path in GitHub repository unilogies/bumsys prior to 2.2.0. | 7.2 - HIGH | 2023-05-05 | 2023-05-11 |
| CVE-2023-2553 json | Cross-site Scripting (XSS) - Stored in GitHub repository unilogies/bumsys prior to 2.2.0. | 5.4 - MEDIUM | 2023-05-05 | 2023-05-10 |
| CVE-2023-2552 json | Cross-Site Request Forgery (CSRF) in GitHub repository unilogies/bumsys prior to 2.1.1. | 8.8 - HIGH | 2023-05-05 | 2023-05-10 |
| CVE-2023-2551 json | PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1. | 8.8 - HIGH | 2023-05-05 | 2023-05-10 |
| CVE-2023-1362 json | Improper Restriction of Rendered UI Layers or Frames in GitHub repository unilogies/bumsys prior to v2.0.2. | 6.1 - MEDIUM | 2023-03-13 | 2023-03-15 |
| CVE-2023-1361 json | SQL Injection in GitHub repository unilogies/bumsys prior to v2.0.2. | 6.5 - MEDIUM | 2023-03-13 | 2023-03-15 |
| CVE-2023-0455 json | Unrestricted Upload of File with Dangerous Type in GitHub repository unilogies/bumsys prior to v1.0.3-beta. | 8.8 - HIGH | 2023-01-26 | 2023-06-01 |