Vulnerabilities > Seopanel > Seopanel

DATE CVE VULNERABILITY TITLE RISK
2021-08-20 CVE-2020-27461 Unrestricted Upload of File with Dangerous Type vulnerability in Seopanel 4.6.0
A remote code execution vulnerability in SEOPanel 4.6.0 has been fixed for 4.7.0.
network
low complexity
seopanel CWE-434
6.5
2011-01-20 CVE-2010-4331 Cross-Site Scripting vulnerability in Seopanel 2.2.0
Multiple cross-site scripting (XSS) vulnerabilities in Seo Panel 2.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) default_news or (2) sponsors cookies, which are not properly handled by (a) controllers/index.ctrl.php or (b) controllers/settings.ctrl.php.
network
seopanel CWE-79
4.3