Skip to main content

Vendor/product archive

vikisolutions / vera CVEs

Beta · best-effort

3 CVEs tagged to vikisolutions / vera0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2019-20484

Published Jan 5, 2021

An issue was discovered in Viki Vera 4.9.1.26180. A user without access to a project could download or upload project files by opening the Project URL directly in the browser afte…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2019-20483

Published Jan 5, 2021

An issue was discovered in Viki Vera 4.9.1.26180. An attacker could set a user's last name to an XSS Payload, and read another user's cookie and use that to login to the applicati…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-15123

Published Jun 12, 2020

The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. An attacker could use this to upload a malicious .aspx file and gain R…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1