Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2023-27246 An arbitrary file upload vulnerability in the Virtual Disk of MK-Auth 23.01K4.9 allows attackers to execute arbitrary code via uploading a crafted .h… Mk Auth after 23.01k4.9 Fix from $1,9502023-03-28 HIGH 8.8 CVE-2021-21495 MK-AUTH through 19.01 K4.9 allows CSRF for password changes via the central/executar_central.php?acao=altsenha_princ URI. Mk Auth after 19.01 Fix from $1,9502021-01-04 CRITICAL 9.8 CVE-2020-14068 An issue was discovered in MK-AUTH 19.01. The web login functionality allows an attacker to bypass authentication and gain client privileges via SQL … Mk Auth Mitigation only Fix from $2,3002020-06-29 CRITICAL 9.8 CVE-2020-14070 An issue was discovered in MK-AUTH 19.01. There is authentication bypass in the web login functionality because guessable credentials to admin/execut… Mk Auth Mitigation only Fix from $2,3002020-06-29 CRITICAL 9.8 CVE-2020-14072 An issue was discovered in MK-AUTH 19.01. It allows command execution as root via shell metacharacters to /auth admin scripts. Mk Auth Mitigation only Fix from $2,3002020-06-29 MEDIUM 6.8 CVE-2020-14069 An issue was discovered in MK-AUTH 19.01. There are SQL injection issues in mkt/ PHP scripts, as demonstrated by arp.php, dhcp.php, hotspot.php, ip.p… Mk Auth Mitigation only Fix from $1,6002020-06-29 MEDIUM 6.1 CVE-2020-14071 An issue was discovered in MK-AUTH 19.01. XSS vulnerabilities in admin and client scripts allow an attacker to execute arbitrary JavaScript code. Mk Auth Mitigation only Fix from $1,6002020-06-29