Vulnerabilities > Pacsrapor

DATE CVE VULNERABILITY TITLE RISK
2023-03-21 CVE-2023-1153 SQL Injection vulnerability in Pacsrapor
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pacsrapor allows SQL Injection, Command Line Execution through SQL Injection.This issue affects Pacsrapor: before 1.22.
network
low complexity
pacsrapor CWE-89
critical
9.8
2023-03-21 CVE-2023-1154 Cross-site Scripting vulnerability in Pacsrapor
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pacsrapor allows Reflected XSS.This issue affects Pacsrapor: before 1.22.
network
low complexity
pacsrapor CWE-79
6.1