Vulnerabilities > Shilpisoft > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-10-04 | CVE-2024-47652 | Unspecified vulnerability in Shilpisoft Client Dashboard This vulnerability exists in Shilpi Client Dashboard due to implementation of inadequate authentication mechanism in the login module wherein access to any users account is granted with just their corresponding mobile number. | 8.1 |
2024-10-04 | CVE-2024-47654 | Unspecified vulnerability in Shilpisoft Client Dashboard This vulnerability exists in Shilpi Client Dashboard due to lack of rate limiting and Captcha protection for OTP requests in certain API endpoint. | 7.5 |
2024-10-04 | CVE-2024-47655 | Unrestricted Upload of File with Dangerous Type vulnerability in Shilpisoft Client Dashboard This vulnerability exists in the Shilpi Client Dashboard due to improper validation of files being uploaded other than the specified extension. | 8.8 |