Vulnerabilities > Mojoportal > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-10-02 CVE-2023-44011 Unspecified vulnerability in Mojoportal 2.7.0.0
An issue in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via a crafted script to the layout.master skin file at the Skin management component.
network
low complexity
mojoportal
critical
9.8
2023-10-02 CVE-2023-44008 Unrestricted Upload of File with Dangerous Type vulnerability in Mojoportal 2.7.0.0
File Upload vulnerability in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via the File Manager function.
network
low complexity
mojoportal CWE-434
critical
9.8
2023-10-02 CVE-2023-44009 Unrestricted Upload of File with Dangerous Type vulnerability in Mojoportal 2.7.0.0
File Upload vulnerability in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via the Skin Management function.
network
low complexity
mojoportal CWE-434
critical
9.8