Known Vulnerabilities for products from Dext5
Listed below are 6 of the newest known vulnerabilities associated with the vendor "Dext5".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-35362 json | DEXT5Upload 2.7.1262310 and earlier is affected by Directory Traversal in handler/dext5handler.jsp. This could allow remote f... | 7.5 - HIGH | 2020-12-26 | 2020-12-30 |
| CVE-2020-13894 json | handler/upload_handler.jsp in DEXT5 Editor through 3.5.1402961 allows an attacker to download arbitrary files via the savefil... | 7.5 - HIGH | 2020-06-07 | 2020-06-11 |
| CVE-2020-13442 json | A Remote code execution vulnerability exists in DEXT5Upload in DEXT5 through 2.7.1402870. An attacker can upload a PHP file v... | 9.8 - CRITICAL | 2020-05-25 | 2020-05-27 |
| CVE-2020-7875 json | DEXT5 Upload 5.0.0.117 and earlier versions contain a vulnerability, which could allow remote attacker to download and execut... | 8.8 - HIGH | 2021-10-28 | 2021-11-01 |
| CVE-2020-7864 json | Parameter manipulation can bypass authentication to cause file upload and execution. This will execute the remote code. This ... | 9.8 - CRITICAL | 2021-06-15 | 2021-06-22 |
| CVE-2020-7832 json | A vulnerability (improper input validation) in the DEXT5 Upload solution allows an unauthenticated attacker to download and e... | 9.8 - CRITICAL | 2021-09-07 | 2021-09-21 |
Known software with vulnerabilities from Dext5
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Dext5 | Dext5 | 2.7.1402870 |
| Application | Dext5 | Dext5upload | - |
| Application | Dext5 | Upload | 5.0.0.112 |