Vulnerabilities > Fit2Cloud > Cloudexplorer Lite

DATE CVE VULNERABILITY TITLE RISK
2024-01-06 CVE-2023-50612 Incorrect Default Permissions vulnerability in Fit2Cloud Cloudexplorer Lite 1.4.1
Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain sensitive information via the cloud accounts parameter.
local
low complexity
fit2cloud CWE-276
7.8
2023-10-30 CVE-2023-44397 Improper Authentication vulnerability in Fit2Cloud Cloudexplorer Lite
CloudExplorer Lite is an open source, lightweight cloud management platform.
network
low complexity
fit2cloud CWE-287
critical
9.8
2023-09-20 CVE-2023-42147 Cleartext Transmission of Sensitive Information vulnerability in Fit2Cloud Cloudexplorer Lite 1.3.1
An issue in CloudExplorer Lite 1.3.1 allows an attacker to obtain sensitive information via the login key component.
network
low complexity
fit2cloud CWE-319
7.5
2023-08-24 CVE-2023-39519 Information Exposure vulnerability in Fit2Cloud Cloudexplorer Lite
Cloud Explorer Lite is an open source cloud management platform.
network
low complexity
fit2cloud CWE-200
4.9
2023-08-04 CVE-2023-38692 OS Command Injection vulnerability in Fit2Cloud Cloudexplorer Lite
CloudExplorer Lite is an open source, lightweight cloud management platform.
network
low complexity
fit2cloud CWE-78
critical
9.8
2023-06-27 CVE-2023-34240 Weak Password Requirements vulnerability in Fit2Cloud Cloudexplorer Lite
Cloudexplorer-lite is an open source cloud software stack.
network
low complexity
fit2cloud CWE-521
critical
9.8
2023-06-27 CVE-2023-3423 Weak Password Requirements vulnerability in Fit2Cloud Cloudexplorer Lite
Weak Password Requirements in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v 1.2.0.
network
low complexity
fit2cloud CWE-521
8.8
2023-05-23 CVE-2023-2845 Unspecified vulnerability in Fit2Cloud Cloudexplorer Lite
Improper Access Control in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v1.1.0.
network
low complexity
fit2cloud
8.1
2023-05-23 CVE-2023-2844 Authorization Bypass Through User-Controlled Key vulnerability in Fit2Cloud Cloudexplorer Lite
Authorization Bypass Through User-Controlled Key in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v1.1.0.
network
low complexity
fit2cloud CWE-639
4.9