Kvf-admin Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 3
    Known Exploited: 0
    1
    Critical Level Threats
    0
    High Level Threats
    1
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-9291

    kalvinGit kvf-admin XML File cross site scripting

    Last Modified: Oct 07, 2024
    Published: Sep 27, 2024

    CVE-2024-9280

    kalvinGit kvf-admin FileUploadKit.java fileUpload unrestricted upload

    Last Modified: Oct 04, 2024
    Published: Sep 27, 2024

    CVE-2022-35857

    kvf-admin through 2022-02-12 allows remote attackers to execute arbitrary code because deserialization is mishandled. The rememberMe parameter is encrypted with a hardcoded key from the com.kalvin.kvf.common.shiro.ShiroConfig file.

    Last Modified: Nov 21, 2024
    Published: Jul 13, 2022
    Items Per Page
    Kvf-Admin_Project Vulnerabilities & Security CVEs | CVE-DB