Vulnerabilities > Kooboo

DATE CVE VULNERABILITY TITLE RISK
2021-09-14 CVE-2021-36581 Unrestricted Upload of File with Dangerous Type vulnerability in Kooboo CMS 2.1.1.0
Kooboo CMS 2.1.1.0 is vulnerable to Insecure file upload.
network
low complexity
kooboo CWE-434
critical
9.8
2021-09-14 CVE-2021-36582 Unrestricted Upload of File with Dangerous Type vulnerability in Kooboo CMS 2.1.1.0
In Kooboo CMS 2.1.1.0, it is possible to upload a remote shell (e.g., aspx) to the server and then call upon it to receive a reverse shell from the victim server.
network
low complexity
kooboo CWE-434
critical
9.8