Vulnerabilities > Os4Ed

DATE CVE VULNERABILITY TITLE RISK
2020-09-01 CVE-2020-6144 Code Injection vulnerability in Os4Ed Opensis 7.4
A remote code execution vulnerability exists in the install functionality of OS4Ed openSIS 7.4.
network
low complexity
os4ed CWE-94
critical
9.8
2020-09-01 CVE-2020-6143 Code Injection vulnerability in Os4Ed Opensis 7.4
A remote code execution vulnerability exists in the install functionality of OS4Ed openSIS 7.4.
network
low complexity
os4ed CWE-94
critical
9.8
2020-09-01 CVE-2020-6142 Path Traversal vulnerability in Os4Ed Opensis 7.3
A remote code execution vulnerability exists in the Modules.php functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-22
critical
9.8
2020-09-01 CVE-2020-6140 SQL Injection vulnerability in Os4Ed Opensis 7.3
SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-89
critical
9.8
2020-09-01 CVE-2020-6139 SQL Injection vulnerability in Os4Ed Opensis 7.3
SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-89
critical
9.8
2020-09-01 CVE-2020-6138 SQL Injection vulnerability in Os4Ed Opensis 7.3
SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-89
critical
9.8
2020-09-01 CVE-2020-6137 SQL Injection vulnerability in Os4Ed Opensis 7.3
SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-89
critical
9.8
2020-09-01 CVE-2020-6141 SQL Injection vulnerability in Os4Ed Opensis 7.3
An exploitable SQL injection vulnerability exists in the login functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-89
critical
9.8
2020-09-01 CVE-2020-6136 SQL Injection vulnerability in Os4Ed Opensis 7.3
An exploitable SQL injection vulnerability exists in the DownloadWindow.php functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-89
8.8
2020-09-01 CVE-2020-6135 SQL Injection vulnerability in Os4Ed Opensis 7.3
An exploitable SQL injection vulnerability exists in the Validator.php functionality of OS4Ed openSIS 7.3.
network
low complexity
os4ed CWE-89
8.8