Known Vulnerabilities for products from Vocabularyserver
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Vocabularyserver".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-14345 json | TemaTres 3.0 allows remote unprivileged users to create an administrator account | 9.8 - CRITICAL | 2019-11-15 | 2023-11-07 |
| CVE-2019-14344 json | TemaTres 3.0 has reflected XSS via the replace_string or search_string parameter to the vocab/admin.php?doAdmin=bulkReplace U... | 6.1 - MEDIUM | 2019-12-13 | 2023-11-07 |
| CVE-2019-14343 json | TemaTres 3.0 has stored XSS via the value parameter to the vocab/admin.php?vocabulario_id=list URI. | 5.4 - MEDIUM | 2019-11-15 | 2023-11-07 |
Known software with vulnerabilities from Vocabularyserver
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Vocabularyserver | Tematres | 3.0 |