Vulnerabilities > Fossbilling

DATE CVE VULNERABILITY TITLE RISK
2023-07-31 CVE-2023-4005 Insufficient Session Expiration vulnerability in Fossbilling
Insufficient Session Expiration in GitHub repository fossbilling/fossbilling prior to 0.5.5.
network
low complexity
fossbilling CWE-613
critical
9.8
2023-07-10 CVE-2023-3568 Open Redirect vulnerability in Fossbilling
Open Redirect in GitHub repository alextselegidis/easyappointments prior to 1.5.0.
network
low complexity
fossbilling CWE-601
4.8
2023-07-06 CVE-2023-3521 Cross-site Scripting vulnerability in Fossbilling
Cross-site Scripting (XSS) - Reflected in GitHub repository fossbilling/fossbilling prior to 0.5.4.
network
low complexity
fossbilling CWE-79
6.1
2023-06-30 CVE-2023-3490 SQL Injection vulnerability in Fossbilling
SQL Injection in GitHub repository fossbilling/fossbilling prior to 0.5.3.
network
low complexity
fossbilling CWE-89
critical
9.8
2023-06-30 CVE-2023-3491 Unrestricted Upload of File with Dangerous Type vulnerability in Fossbilling
Unrestricted Upload of File with Dangerous Type in GitHub repository fossbilling/fossbilling prior to 0.5.3.
network
low complexity
fossbilling CWE-434
8.8
2023-06-30 CVE-2023-3493 Improper Neutralization of Formula Elements in a CSV File vulnerability in Fossbilling
Improper Neutralization of Formula Elements in a CSV File in GitHub repository fossbilling/fossbilling prior to 0.5.3.
network
low complexity
fossbilling CWE-1236
8.0
2023-06-23 CVE-2023-3393 Code Injection vulnerability in Fossbilling
Code Injection in GitHub repository fossbilling/fossbilling prior to 0.5.1.
network
low complexity
fossbilling CWE-94
7.2
2023-06-23 CVE-2023-3394 Session Fixation vulnerability in Fossbilling
Session Fixation in GitHub repository fossbilling/fossbilling prior to 0.5.1.
network
low complexity
fossbilling CWE-384
5.4
2023-06-14 CVE-2023-3227 Insufficient Granularity of Access Control vulnerability in Fossbilling
Insufficient Granularity of Access Control in GitHub repository fossbilling/fossbilling prior to 0.5.0.
network
low complexity
fossbilling CWE-1220
5.7
2023-06-14 CVE-2023-3228 Unspecified vulnerability in Fossbilling
Business Logic Errors in GitHub repository fossbilling/fossbilling prior to 0.5.0.
network
low complexity
fossbilling
5.7