Vulnerabilities > Microweber > Microweber > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-03-11 CVE-2022-0921 Unrestricted Upload of File with Dangerous Type vulnerability in Microweber
Abusing Backup/Restore feature to achieve Remote Code Execution in GitHub repository microweber/microweber prior to 1.2.12.
local
low complexity
microweber CWE-434
6.7
2022-03-11 CVE-2022-0928 Cross-site Scripting vulnerability in Microweber
Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 1.2.12.
network
low complexity
microweber CWE-79
5.4
2022-03-11 CVE-2022-0912 Unrestricted Upload of File with Dangerous Type vulnerability in Microweber
Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber prior to 1.2.11.
network
low complexity
microweber CWE-434
4.8
2022-03-10 CVE-2022-0906 Cross-site Scripting vulnerability in Microweber
Unrestricted file upload leads to stored XSS in GitHub repository microweber/microweber prior to 1.1.12.
network
low complexity
microweber CWE-79
4.8
2022-02-26 CVE-2022-0723 Cross-site Scripting vulnerability in Microweber
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.2.11.
network
low complexity
microweber CWE-79
5.4
2022-02-26 CVE-2022-0762 Unspecified vulnerability in Microweber
Incorrect Authorization in GitHub repository microweber/microweber prior to 1.3.
network
low complexity
microweber
4.3
2022-02-26 CVE-2022-0763 Cross-site Scripting vulnerability in Microweber
Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 1.3.
network
low complexity
microweber CWE-79
4.8
2022-02-23 CVE-2022-0719 Cross-site Scripting vulnerability in Microweber
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.3.
network
low complexity
microweber CWE-79
5.4
2022-02-23 CVE-2022-0721 Unspecified vulnerability in Microweber
Insertion of Sensitive Information Into Debugging Code in GitHub repository microweber/microweber prior to 1.3.
network
low complexity
microweber
6.5
2022-02-23 CVE-2022-0724 Insecure Storage of Sensitive Information vulnerability in Microweber
Insecure Storage of Sensitive Information in GitHub repository microweber/microweber prior to 1.3.
network
low complexity
microweber CWE-922
6.5