VYPR

re_porter 16

by Geutebrück

CVEs (2)

  • CVE-2018-15534CriAug 21, 2018
    risk 0.69cvss 9.8epss 0.32

    Geutebrueck re_porter 16 before 7.8.974.20 has a possibility of unauthenticated access to sensitive information including usernames and hashes via a direct request for /statistics/gscsetup.xml on TCP port 12003.

  • CVE-2018-15533MedAug 21, 2018
    risk 0.43cvss 6.1epss 0.03

    A reflected cross-site scripting vulnerability exists in Geutebrueck re_porter 16 before 7.8.974.20 by appending a query string to /modifychannel/exec or /images/*.png on TCP port 12005.