It is identified a vulnerability of insufficient authentication in an important specific function of Status PowerBPM. A LAN attacker with normal user…
statusnet through 2010 allows attackers to spoof syslog messages via newline injection attacks.
Cross-site scripting (XSS) vulnerability in statusnet through 2010 in error message contents.
Unspecified vulnerability in statusnet through 2010 due to the way addslashes are used in SQL string escapes..
statusnet before 0.9.9 has XSS
ubuntu-server.js in Status React Native Desktop before v0.57.8_mobile_ui allows Remote Code Execution.
Multiple SQL injection vulnerabilities in StatusNet 1.0 before 1.0.2 and 1.1.0 allow remote attackers to execute arbitrary SQL commands via vectors r…
StatusNet 0.9.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a…