Vulnerabilities > Nationalkeep

DATE CVE VULNERABILITY TITLE RISK
2024-09-26 CVE-2024-7107 Files or Directories Accessible to External Parties vulnerability in Nationalkeep Cybermath 1.4
Files or Directories Accessible to External Parties vulnerability in National Keep Cyber Security Services CyberMath allows Collect Data from Common Resource Locations.This issue affects CyberMath: before CYBM.240816253.
network
low complexity
nationalkeep CWE-552
7.5
2024-09-26 CVE-2024-7108 Incorrect Authorization vulnerability in Nationalkeep Cybermath 1.4
Incorrect Authorization vulnerability in National Keep Cyber Security Services CyberMath allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects CyberMath: before CYBM.240816253.
network
low complexity
nationalkeep CWE-863
critical
9.8
2024-02-02 CVE-2023-6672 Cross-site Scripting vulnerability in Nationalkeep Cybermath 1.4
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in National Keep Cyber Security Services CyberMath allows Stored XSS.This issue affects CyberMath: from v1.4 before v1.5.
network
low complexity
nationalkeep CWE-79
5.4
2024-02-02 CVE-2023-6673 Cross-site Scripting vulnerability in Nationalkeep Cybermath 1.4
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in National Keep Cyber Security Services CyberMath allows Reflected XSS.This issue affects CyberMath: from v.1.4 before v.1.5.
network
low complexity
nationalkeep CWE-79
6.1
2024-02-02 CVE-2023-6675 Unrestricted Upload of File with Dangerous Type vulnerability in Nationalkeep Cybermath 1.4
Unrestricted Upload of File with Dangerous Type vulnerability in National Keep Cyber Security Services CyberMath allows Upload a Web Shell to a Web Server.This issue affects CyberMath: from v.1.4 before v.1.5.
network
low complexity
nationalkeep CWE-434
critical
9.8
2024-02-02 CVE-2023-6676 Cross-Site Request Forgery (CSRF) vulnerability in Nationalkeep Cybermath 1.4
Cross-Site Request Forgery (CSRF) vulnerability in National Keep Cyber Security Services CyberMath allows Cross Site Request Forgery.This issue affects CyberMath: from v1.4 before v1.5.
network
low complexity
nationalkeep CWE-352
8.8