Konawiki2
by Kujirahand
CVEs (5)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-20721 | 0.00 | — | 0.02 | May 20, 2021 | KonaWiki2 versions prior to 2.2.4 allows a remote attacker to upload arbitrary files via unspecified vectors. If the file contains PHP scripts, arbitrary code may be executed. | |||
| CVE-2021-20720 | 0.00 | — | 0.01 | May 20, 2021 | SQL injection vulnerability in the KonaWiki2 versions prior to 2.2.4 allows remote attackers to execute arbitrary SQL commands and to obtain/alter the information stored in the database via unspecified vectors. | |||
| CVE-2020-5614 | 0.00 | — | 0.02 | Jul 29, 2020 | Directory traversal vulnerability in KonaWiki 3.1.0 and earlier allows remote attackers to read arbitrary files via unspecified vectors. | |||
| CVE-2020-5613 | 0.00 | — | 0.01 | Jul 29, 2020 | Cross-site scripting vulnerability in KonaWiki 3.1.0 and earlier allows remote attackers to execute an arbitrary script via a specially crafted URL. | |||
| CVE-2020-5612 | 0.00 | — | 0.01 | Jul 29, 2020 | Cross-site scripting vulnerability in KonaWiki 2.2.0 and earlier allows remote attackers to execute an arbitrary script via a specially crafted URL. |
- CVE-2021-20721May 20, 2021risk 0.00cvss —epss 0.02
KonaWiki2 versions prior to 2.2.4 allows a remote attacker to upload arbitrary files via unspecified vectors. If the file contains PHP scripts, arbitrary code may be executed.
- CVE-2021-20720May 20, 2021risk 0.00cvss —epss 0.01
SQL injection vulnerability in the KonaWiki2 versions prior to 2.2.4 allows remote attackers to execute arbitrary SQL commands and to obtain/alter the information stored in the database via unspecified vectors.
- CVE-2020-5614Jul 29, 2020risk 0.00cvss —epss 0.02
Directory traversal vulnerability in KonaWiki 3.1.0 and earlier allows remote attackers to read arbitrary files via unspecified vectors.
- CVE-2020-5613Jul 29, 2020risk 0.00cvss —epss 0.01
Cross-site scripting vulnerability in KonaWiki 3.1.0 and earlier allows remote attackers to execute an arbitrary script via a specially crafted URL.
- CVE-2020-5612Jul 29, 2020risk 0.00cvss —epss 0.01
Cross-site scripting vulnerability in KonaWiki 2.2.0 and earlier allows remote attackers to execute an arbitrary script via a specially crafted URL.