Vulnerabilities > Kodcloud > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-17 CVE-2023-52069 Cross-site Scripting vulnerability in Kodcloud Kodbox 1.49.04
kodbox v1.49.04 was discovered to contain a cross-site scripting (XSS) vulnerability via the URL parameter.
network
low complexity
kodcloud CWE-79
5.4
2024-01-16 CVE-2023-52068 Cross-site Scripting vulnerability in Kodcloud Kodbox 1.43
kodbox v1.43 was discovered to contain a cross-site scripting (XSS) vulnerability via the operation and login logs.
network
low complexity
kodcloud CWE-79
6.1
2023-12-19 CVE-2023-49489 Cross-site Scripting vulnerability in Kodcloud Kodexplorer 4.51
Reflective Cross Site Scripting (XSS) vulnerability in KodExplorer version 4.51, allows attackers to obtain sensitive information and escalate privileges via the APP_HOST parameter at config/i18n/en/main.php.
network
low complexity
kodcloud CWE-79
6.1
2023-10-23 CVE-2023-45998 Cross-site Scripting vulnerability in Kodcloud Kodbox 1.44
kodbox 1.44 is vulnerable to Cross Site Scripting (XSS).
network
low complexity
kodcloud CWE-79
5.4
2023-09-06 CVE-2021-36646 Cross-site Scripting vulnerability in Kodcloud Kodexplorer 4.45
A Cross Site Scrtpting (XSS) vulnerability in KodExplorer 4.45 allows remote attackers to run arbitrary code via /index.php page.
network
low complexity
kodcloud CWE-79
6.1
2023-07-10 CVE-2023-37153 Cross-site Scripting vulnerability in Kodcloud Kodexplorer 4.51
KodExplorer 4.51 contains a Cross-Site Scripting (XSS) vulnerability in the Description box of the Light App creation feature.
network
low complexity
kodcloud CWE-79
6.1
2023-05-11 CVE-2023-29791 Cross-site Scripting vulnerability in Kodcloud Kodbox
kodbox <= 1.37 is vulnerable to Cross Site Scripting (XSS) via the debug information.
network
low complexity
kodcloud CWE-79
6.1