Vulnerabilities > Modern Honey Network Project

DATE CVE VULNERABILITY TITLE RISK
2023-02-03 CVE-2021-37234 Missing Authentication for Critical Function vulnerability in Modern Honey Network Project Modern Honey Network 20201123
Incorrect Access Control vulnerability in Modern Honey Network commit 0abf0db9cd893c6d5c727d036e1f817c02de4c7b allows remote attackers to view sensitive information via crafted PUT request to Web API.
network
low complexity
modern-honey-network-project CWE-306
6.5
2020-11-25 CVE-2020-29069 Unspecified vulnerability in Modern Honey Network Project Modern Honey Network 20201123
_get_flag_ip_localdb in server/mhn/ui/utils.py in Modern Honey Network (MHN) through 2020-11-23 allows attackers to cause a denial-of-service via an IP address that is absent from a local geolocation database, because the code tries to uppercase a return value even if that value is not a string.
local
low complexity
modern-honey-network-project
5.5