Known Vulnerabilities for products from Onethink
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Onethink".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-16449 json | OneThink 1.1.141212 allows CSRF for adding a page via admin.php?s=/Channel/add.html, adding a blog via admin.php?s=/Article/u... | 6.5 - MEDIUM | 2018-09-04 | 2018-10-04 |
| CVE-2018-15198 json | An issue was discovered in OneThink v1.1. There is a CSRF vulnerability in admin.php?s=/User/add.html that can add a user. | 8.8 - HIGH | 2018-08-08 | 2018-10-04 |
| CVE-2018-15197 json | An issue was discovered in OneThink v1.1. There is a CSRF vulnerability in admin.php?s=/AuthManager/addToGroup.html that can ... | 8.8 - HIGH | 2018-08-08 | 2018-10-04 |
| CVE-2017-14323 json | SSRF (Server Side Request Forgery) in getRemoteImage.php in Ueditor in Onethink V1.0 and V1.1 allows remote attackers to obta... | 9.8 - CRITICAL | 2018-04-10 | 2018-05-17 |
Known software with vulnerabilities from Onethink
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Onethink | Onethink | 1.0.130929 |