Vulnerabilities > Pukiwiki

DATE CVE VULNERABILITY TITLE RISK
2022-08-23 CVE-2022-27637 Cross-site Scripting vulnerability in Pukiwiki 1.5.1/1.5.2/1.5.3
Reflected cross-site scripting vulnerability in PukiWiki versions 1.5.1 to 1.5.3 allows a remote attacker to inject an arbitrary script via unspecified vectors.
network
low complexity
pukiwiki CWE-79
6.1
2022-08-23 CVE-2022-34486 Path Traversal vulnerability in Pukiwiki
Path traversal vulnerability in PukiWiki versions 1.4.5 to 1.5.3 allows a remote authenticated attacker with an administrative privilege to execute a malicious script via unspecified vectors.
network
low complexity
pukiwiki CWE-22
7.2
2022-08-23 CVE-2022-36350 Cross-site Scripting vulnerability in Pukiwiki
Stored cross-site scripting vulnerability in PukiWiki versions 1.3.1 to 1.5.3 allows a remote attacker to inject an arbitrary script via unspecified vectors.
network
low complexity
pukiwiki CWE-79
5.4