Vulnerabilities > Ubilling

DATE CVE VULNERABILITY TITLE RISK
2020-12-10 CVE-2020-29311 Missing Authentication for Critical Function vulnerability in Ubilling 1.0.9
Ubilling v1.0.9 allows Remote Command Execution as Root user by executing a malicious command that is injected inside the config file and being triggered by another part of the software.
network
low complexity
ubilling CWE-306
critical
9.8
2018-12-20 CVE-2018-1000827 Deserialization of Untrusted Data vulnerability in Ubilling 0.9.0/0.9.1/0.9.2
Ubilling version <= 0.9.2 contains a Other/Unknown vulnerability in user-controlled parameter that can result in Disclosure of confidential data, denial of service, SSRF, remote code execution.
network
low complexity
ubilling CWE-502
critical
9.8