Vulnerabilities > Ninjateam > Filebird > 4.3.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-02-25 | CVE-2025-26977 | Authorization Bypass Through User-Controlled Key vulnerability in Ninjateam Filebird Authorization Bypass Through User-Controlled Key vulnerability in Ninja Team Filebird allows Exploiting Incorrectly Configured Access Control Security Levels. | 7.2 |
2024-12-09 | CVE-2023-25966 | Missing Authorization vulnerability in Ninjateam Filebird Missing Authorization vulnerability in Ninja Team Filebird allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Filebird: from n/a through 5.1.4. | 6.5 |
2024-12-06 | CVE-2024-53825 | Missing Authorization vulnerability in Ninjateam Filebird Missing Authorization vulnerability in Ninja Team Filebird allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Filebird: from n/a through 6.3.2. | 7.2 |
2024-05-14 | CVE-2024-35166 | Unspecified vulnerability in Ninjateam Filebird Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ninja Team Filebird.This issue affects Filebird: from n/a through 5.6.3. | 7.5 |
2024-02-05 | CVE-2024-0691 | Cross-site Scripting vulnerability in Ninjateam Filebird The FileBird plugin for WordPress is vulnerable to Stored Cross-Site Scripting via imported folder titles in all versions up to, and including, 5.5.8.1 due to insufficient input sanitization and output escaping. | 4.8 |