Known Vulnerabilities for products from Codiad
Listed below are 13 of the newest known vulnerabilities associated with the vendor "Codiad".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-23355 json | ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Codiad 2.8.4 /componetns/user/class.user.php:Authenticate() is vulnerable in magic ... | 7.5 - HIGH | 2021-01-27 | 2021-07-21 |
| CVE-2020-14044 json | ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Server-Side Request Forgery (SSRF) vulnerability was found in Codiad v1.7.8 and l... | 7.2 - HIGH | 2020-08-24 | 2022-12-06 |
| CVE-2020-14043 json | ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Cross Side Request Forgery (CSRF) vulnerability was found in Codiad v1.7.8 and la... | 8.8 - HIGH | 2020-08-24 | 2022-12-06 |
| CVE-2020-14042 json | ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Cross Site Scripting (XSS) vulnerability was found in Codiad v1.7.8 and later. Th... | 6.1 - MEDIUM | 2020-08-25 | 2023-02-03 |
| CVE-2019-19208 json | Codiad Web IDE through 2.8.4 allows PHP Code injection. | 9.8 - CRITICAL | 2020-03-16 | 2022-02-10 |
| CVE-2018-19423 json | Codiad 2.8.4 allows remote authenticated administrators to execute arbitrary code by uploading an executable file. | 7.2 - HIGH | 2018-11-21 | 2022-02-19 |
| CVE-2018-14009 json | Codiad through 2.8.4 allows Remote Code Execution, a different vulnerability than CVE-2017-11366 and CVE-2017-15689. | 9.8 - CRITICAL | 2018-07-12 | 2021-03-31 |
| CVE-2017-1000125 json | Codiad(full version) is vulnerable to write anything to configure file in the installation resulting upload a webshell. | Not Provided | 2017-11-17 | 2025-04-20 |
| CVE-2017-20178 json | ** UNSUPPPORTED WHEN ASSIGNED ** ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Codiad 2.8.0. It has been rated... | 7.5 - HIGH | 2023-02-21 | 2023-11-07 |
| CVE-2017-11366 json | components/filemanager/class.filemanager.php in Codiad before 2.8.4 is vulnerable to remote command execution because shell c... | 9.8 - CRITICAL | 2017-08-21 | 2019-10-03 |
| CVE-2014-9582 json | Cross-site scripting (XSS) vulnerability in components/filemanager/dialog.php in Codiad 2.4.3 allows remote attackers to inje... | Not Provided | 2015-01-08 | 2026-05-06 |
| CVE-2014-9581 json | Directory traversal vulnerability in components/filemanager/download.php in Codiad 2.4.3 allows remote attackers to read arbi... | Not Provided | 2015-01-08 | 2026-05-06 |
| CVE-2013-7257 json | Cross-site scripting (XSS) vulnerability in Codiad 2.0.7 allows remote attackers to inject arbitrary web script or HTML via t... | Not Provided | 2014-01-03 | 2026-04-29 |
Known software with vulnerabilities from Codiad
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Codiad | Codiad | - |