Skip to main content

Vendor/product archive

lg / simple_editor CVEs

Beta · best-effort

25 CVEs tagged to lg / simple_editor13 Critical, 9 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2023-40516

Published May 3, 2024

LG Simple Editor Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installatio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40515

Published May 3, 2024

LG Simple Editor joinAddUser Improper Input Validation Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affec…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40514

Published May 3, 2024

LG Simple Editor FileManagerController getImageByFilename Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitiv…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-40513

Published May 3, 2024

LG Simple Editor UserManageController getImageByFilename Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-40512

Published May 3, 2024

LG Simple Editor PlayerController getImageByFilename Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive inf…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-40511

Published May 3, 2024

LG Simple Editor checkServer Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of LG Simple Editor…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40510

Published May 3, 2024

LG Simple Editor getServerSetting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of LG Simple E…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40509

Published May 3, 2024

LG Simple Editor deleteCanvas Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installat…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40508

Published May 3, 2024

LG Simple Editor putCanvasDB Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installati…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40507

Published May 3, 2024

LG Simple Editor copyContent XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40506

Published May 3, 2024

LG Simple Editor copyContent XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40505

Published May 3, 2024

LG Simple Editor createThumbnailByMovie Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected ins…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40504

Published May 3, 2024

LG Simple Editor readVideoInfo Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installation…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40503

Published May 3, 2024

LG Simple Editor saveXmlFile XML External Entity Processing Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40502

Published May 3, 2024

LG Simple Editor cropImage Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installation…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40501

Published May 3, 2024

LG Simple Editor copyContent Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected insta…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40500

Published May 3, 2024

LG Simple Editor copyContent Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected insta…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40499

Published May 3, 2024

LG Simple Editor mkdir Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40498

Published May 3, 2024

LG Simple Editor cp Command Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40497

Published May 3, 2024

LG Simple Editor saveXml Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40496

Published May 3, 2024

LG Simple Editor copyStickerContent Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affec…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40495

Published May 3, 2024

LG Simple Editor copyTemplateAll Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-40494

Published May 3, 2024

LG Simple Editor deleteFolder Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installat…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40493

Published May 3, 2024

LG Simple Editor copySessionFolder Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected instal…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-40492

Published May 3, 2024

LG Simple Editor deleteCheckSession Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected ins…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 25 CVEsPage 1 of 1