Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:phpipam:phpipam:1.5.0:*:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2023-41580 |
Phpipam before v1.5.2 was discovered to contain a LDAP injection vulnerability via the dname parameter at /users/ad-search-result.php. This vulnerability allows attackers to enumerate arbitrary fields in the LDAP server and access sensitive data via a crafted POST request. Published: October 02, 2023; 9:15:09 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-1212 |
Cross-site Scripting (XSS) - Stored in GitHub repository phpipam/phpipam prior to v1.5.2. Published: March 06, 2023; 7:15:09 PM -0500 |
V3.1: 4.8 MEDIUM V2.0:(not available) |
CVE-2023-1211 |
SQL Injection in GitHub repository phpipam/phpipam prior to v1.5.2. Published: March 06, 2023; 7:15:09 PM -0500 |
V3.1: 7.2 HIGH V2.0:(not available) |
CVE-2023-0678 |
Missing Authorization in GitHub repository phpipam/phpipam prior to v1.5.1. Published: February 04, 2023; 8:15:12 AM -0500 |
V3.1: 5.3 MEDIUM V2.0:(not available) |
CVE-2023-0677 |
Cross-site Scripting (XSS) - Reflected in GitHub repository phpipam/phpipam prior to v1.5.1. Published: February 04, 2023; 8:15:12 AM -0500 |
V3.1: 6.1 MEDIUM V2.0:(not available) |
CVE-2023-0676 |
Cross-site Scripting (XSS) - Reflected in GitHub repository phpipam/phpipam prior to 1.5.1. Published: February 04, 2023; 8:15:12 AM -0500 |
V3.1: 6.1 MEDIUM V2.0:(not available) |
CVE-2022-41443 |
phpipam v1.5.0 was discovered to contain a header injection vulnerability via the component /admin/subnets/ripe-query.php. Published: October 03, 2022; 12:15:13 PM -0400 |
V3.1: 9.8 CRITICAL V2.0:(not available) |