Products: 5
    Vulnerabilities: 16
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    14
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-67886

    Remote Code Execution via Translate Module Upload in Bitrix24

    Last Modified: May 11, 2026
    Published: May 08, 2026

    CVE-2024-34887

    Insufficiently protected credentials in AD/LDAP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send AD/LDAP administrators account passwords to an arbitrary server via HTTP POST request.

    Last Modified: Nov 06, 2024
    Published: Nov 04, 2024

    CVE-2024-34883

    Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allow remote administrators to read proxy-server accounts passwords via HTTP GET request.

    Last Modified: Nov 06, 2024
    Published: Nov 04, 2024

    CVE-2024-34882

    Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send SMTP account passwords to an arbitrary server via HTTP POST request.

    Last Modified: Nov 06, 2024
    Published: Nov 04, 2024

    CVE-2024-34885

    Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to read SMTP accounts passwords via HTTP GET request.

    Last Modified: Sep 04, 2025
    Published: Nov 04, 2024
    Items Per Page
    Bitrix Vulnerabilities & Security CVEs | CVE-DB