Products: 1
    Vulnerabilities: 9
    Known Exploited: 0
    2
    Critical Level Threats
    1
    High Level Threats
    6
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-48029

    Corebos 8.0 and below is vulnerable to CSV Injection. An attacker with low privileges can inject a malicious command into a table. This vulnerability is exploited when an administrator visits the user management section, exports the data to a CSV file, and then opens it, leading to the execution of the malicious payload on the administrator's computer.

    Last Modified: Sep 29, 2025
    Published: Nov 17, 2023

    CVE-2023-3070

    Cross-site Scripting (XSS) - Stored in tsolucio/corebos

    Last Modified: Jan 08, 2025
    Published: Jun 02, 2023

    CVE-2023-3073

    Cross-site Scripting (XSS) - Stored in tsolucio/corebos

    Last Modified: Jan 08, 2025
    Published: Jun 02, 2023

    CVE-2023-3075

    Cross-Site Request Forgery (CSRF) in tsolucio/corebos

    Last Modified: Feb 06, 2025
    Published: Jun 02, 2023

    CVE-2023-3069

    Unverified Password Change in tsolucio/corebos

    Last Modified: Jan 08, 2025
    Published: Jun 02, 2023
    Items Per Page
    Corebos Vulnerabilities & Security CVEs | CVE-DB