Adive Framework
Products
1- 8 CVEs
Recent CVEs
8| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-7991 | Hig | 0.60 | 8.8 | 0.03 | Jan 26, 2020 | Adive Framework 2.0.8 has admin/config CSRF to change the Administrator password. | ||
| CVE-2024-4337 | Hig | 0.49 | 7.6 | 0.00 | Apr 30, 2024 | Adive Framework 2.0.8, does not sufficiently encode user-controlled inputs, resulting in a persistent Cross-Site Scripting (XSS) vulnerability via the /adive/admin/nav/add, in multiple parameters. This vulnerability allows an attacker to retrieve the session details of an… | ||
| CVE-2024-4336 | Hig | 0.49 | 7.6 | 0.00 | Apr 30, 2024 | Adive Framework 2.0.8, does not sufficiently encode user-controlled inputs, resulting in a persistent Cross-Site Scripting (XSS) vulnerability via the /adive/admin/tables/add, in multiple parameters. An attacker could retrieve the session details of an authenticated user. | ||
| CVE-2025-3590 | Med | 0.41 | 6.3 | 0.00 | Apr 14, 2025 | A vulnerability has been found in Adianti Framework up to 8.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to deserialization. The attack can be launched remotely. The exploit has been disclosed to the public and… | ||
| CVE-2020-7990 | Med | 0.40 | 6.1 | 0.01 | Jan 26, 2020 | Adive Framework 2.0.8 has admin/user/add userName XSS. | ||
| CVE-2020-7989 | Med | 0.40 | 6.1 | 0.01 | Jan 26, 2020 | Adive Framework 2.0.8 has admin/user/add userUsername XSS. | ||
| CVE-2026-71446 | Med | 0.38 | — | 0.00 | Aug 6, 2026 | AIL Framework contains a stored cross-site scripting vulnerability in the crawler domain view. Crawled URLs were embedded directly into the JavaScript onclick handler used to display a stored screenshot, without context-appropriate encoding. An attacker who can cause a… | ||
| CVE-2019-14987 | Med | 0.31 | 4.8 | 0.01 | Aug 13, 2019 | Adive Framework through 2.0.7 is affected by XSS in the Create New Table and Create New Navigation Link functions. |
- risk 0.60cvss 8.8epss 0.03
Adive Framework 2.0.8 has admin/config CSRF to change the Administrator password.
- risk 0.49cvss 7.6epss 0.00
Adive Framework 2.0.8, does not sufficiently encode user-controlled inputs, resulting in a persistent Cross-Site Scripting (XSS) vulnerability via the /adive/admin/nav/add, in multiple parameters. This vulnerability allows an attacker to retrieve the session details of an…
- risk 0.49cvss 7.6epss 0.00
Adive Framework 2.0.8, does not sufficiently encode user-controlled inputs, resulting in a persistent Cross-Site Scripting (XSS) vulnerability via the /adive/admin/tables/add, in multiple parameters. An attacker could retrieve the session details of an authenticated user.
- risk 0.41cvss 6.3epss 0.00
A vulnerability has been found in Adianti Framework up to 8.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to deserialization. The attack can be launched remotely. The exploit has been disclosed to the public and…
- risk 0.40cvss 6.1epss 0.01
Adive Framework 2.0.8 has admin/user/add userName XSS.
- risk 0.40cvss 6.1epss 0.01
Adive Framework 2.0.8 has admin/user/add userUsername XSS.
- risk 0.38cvss —epss 0.00
AIL Framework contains a stored cross-site scripting vulnerability in the crawler domain view. Crawled URLs were embedded directly into the JavaScript onclick handler used to display a stored screenshot, without context-appropriate encoding. An attacker who can cause a…
- risk 0.31cvss 4.8epss 0.01
Adive Framework through 2.0.7 is affected by XSS in the Create New Table and Create New Navigation Link functions.