Skip to main content

Vendor/product archive

kozos / easyctf CVEs

Beta · best-effort

3 CVEs tagged to kozos / easyctf0 Critical, 0 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2015-0914

Published May 1, 2015

EasyCTF before 1.4 does not validate the session ID, which allows remote attackers to obtain access via a crafted HTTP request.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0913

Published May 1, 2015

Cross-site scripting (XSS) vulnerability in EasyCTF before 1.4 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2015-0912

Published May 1, 2015

EasyCTF before 1.4 allows remote authenticated users to write executable content to files via unspecified vectors.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1