Vulnerabilities > Cygnux

DATE CVE VULNERABILITY TITLE RISK
2017-11-17 CVE-2017-1000192 Unspecified vulnerability in Cygnux Syspass
Cygnux sysPass version 2.1.7 and older is vulnerable to a Local File Inclusion in the functionality of javascript files inclusion.
network
low complexity
cygnux
5.0
2015-08-18 CVE-2015-6516 SQL Injection vulnerability in Cygnux Syspass
SQL injection vulnerability in cygnux.org sysPass 1.0.9 and earlier allows remote authenticated users to execute arbitrary SQL commands via the search parameter to ajax/ajax_search.php.
network
low complexity
cygnux CWE-89
6.5