VYPR
Vendor

DbNinja

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2019-7747CriFeb 11, 2019
    risk 0.63cvss 9.6epss 0.01

    DbNinja 3.2.7 allows session fixation via the data.php sessid parameter.

  • CVE-2019-7748MedFeb 11, 2019
    risk 0.40cvss 6.1epss 0.01

    _includes\online.php in DbNinja 3.2.7 allows XSS via the data.php task parameter if _users/admin/tasks.php exists.

  • CVE-2019-7545MedFeb 6, 2019
    risk 0.35cvss 5.4epss 0.01

    In DbNinja 3.2.7, the Add Host function of the Manage Hosts pages has a Stored Cross-site Scripting (XSS) vulnerability in the User Name field.