Vulnerabilities > Osclass

DATE CVE VULNERABILITY TITLE RISK
2019-05-24 CVE-2016-10751 Unrestricted Upload of File with Dangerous Type vulnerability in Osclass 3.6.1
osClass 3.6.1 allows oc-admin/plugins.php Directory Traversal via the plugin parameter.
network
low complexity
osclass CWE-434
7.2
2019-01-03 CVE-2018-14481 Cross-site Scripting vulnerability in Osclass 3.7.4
Osclass 3.7.4 has XSS via the query string to index.php, a different vulnerability than CVE-2014-6280.
network
low complexity
osclass CWE-79
6.1