Ocomon Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    2
    Critical Level Threats
    3
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-7709

    OcoMon URL require_access_recovery.php cross site scripting

    Last Modified: Apr 15, 2026
    Published: Aug 13, 2024

    CVE-2023-33558

    An information disclosure vulnerability in the component users-grid-data.php of Ocomon before v4.0.1 allows attackers to obtain sensitive information such as e-mails and usernames.

    Last Modified: Nov 21, 2024
    Published: Oct 26, 2023

    CVE-2023-33559

    A local file inclusion vulnerability via the lang parameter in OcoMon before v4.0.1 allows attackers to execute arbitrary code by supplying a crafted PHP file.

    Last Modified: Nov 21, 2024
    Published: Oct 26, 2023

    CVE-2022-40798

    OcoMon 4.0RC1 is vulnerable to Incorrect Access Control. Through a request the user can obtain the real email, sending the same request with correct email its possible to account takeover.

    Last Modified: May 08, 2025
    Published: Oct 19, 2022

    CVE-2022-41390

    OcoMon v4.0 was discovered to contain a SQL injection vulnerability via the cod parameter at download.php.

    Last Modified: May 15, 2025
    Published: Oct 13, 2022
    Items Per Page
    Ocomon_Project Vulnerabilities & Security CVEs | CVE-DB