Vulnerabilities > Fit2Cloud

DATE CVE VULNERABILITY TITLE RISK
2024-03-10 CVE-2024-2352 Unspecified vulnerability in Fit2Cloud 1Panel
A vulnerability, which was classified as critical, has been found in 1Panel up to 1.10.1-lts.
network
low complexity
fit2cloud
critical
9.8
2024-03-06 CVE-2024-27288 Incorrect Authorization vulnerability in Fit2Cloud 1Panel
1Panel is an open source Linux server operation and maintenance management panel.
network
high complexity
fit2cloud CWE-863
3.1
2024-02-20 CVE-2024-24763 Open Redirect vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host and an operation and maintenance security audit system.
network
low complexity
fit2cloud CWE-601
6.1
2024-02-05 CVE-2024-24768 Missing Encryption of Sensitive Data vulnerability in Fit2Cloud 1Panel 1.9.5
1Panel is an open source Linux server operation and maintenance management panel.
network
low complexity
fit2cloud CWE-311
7.5
2024-01-06 CVE-2023-50612 Incorrect Default Permissions vulnerability in Fit2Cloud Cloudexplorer Lite 1.4.1
Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain sensitive information via the cloud accounts parameter.
local
low complexity
fit2cloud CWE-276
7.8
2023-11-28 CVE-2023-48193 Unspecified vulnerability in Fit2Cloud Jumpserver 3.8.0
Insecure Permissions vulnerability in JumpServer GPLv3 v.3.8.0 allows a remote attacker to execute arbitrary code via bypassing the command filtering function.
network
low complexity
fit2cloud
critical
9.8
2023-10-31 CVE-2023-46138 Unspecified vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host and maintenance security audit system that complies with 4A specifications.
network
low complexity
fit2cloud
5.3
2023-10-30 CVE-2023-44397 Unspecified vulnerability in Fit2Cloud Cloudexplorer Lite
CloudExplorer Lite is an open source, lightweight cloud management platform.
network
low complexity
fit2cloud
critical
9.8
2023-10-25 CVE-2023-46123 Improper Restriction of Excessive Authentication Attempts vulnerability in Fit2Cloud Jumpserver
jumpserver is an open source bastion machine, professional operation and maintenance security audit system that complies with 4A specifications.
network
low complexity
fit2cloud CWE-307
5.3
2023-09-27 CVE-2023-42818 Improper Restriction of Excessive Authentication Attempts vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host.
network
low complexity
fit2cloud CWE-307
critical
9.8