Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    0
    Critical Level Threats
    0
    High Level Threats
    4
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-43193

    Submitty before v22.06.00 is vulnerable to Cross Site Scripting (XSS). An attacker can create a malicious link in the forum that leads to XSS.

    Last Modified: Nov 21, 2024
    Published: Nov 02, 2023

    CVE-2023-43194

    Submitty before v22.06.00 is vulnerable to Incorrect Access Control. An attacker can delete any post in the forum by modifying request parameter.

    Last Modified: Nov 21, 2024
    Published: Nov 02, 2023

    CVE-2020-13121

    Submitty through 20.04.01 has an open redirect via authentication/login?old= during an invalid login attempt.

    Last Modified: Nov 21, 2024
    Published: May 16, 2020

    CVE-2020-12882

    Submitty through 20.04.01 allows XSS via upload of an SVG document, as demonstrated by an attack by a Student against a Teaching Fellow.

    Last Modified: Nov 21, 2024
    Published: May 15, 2020
    Items Per Page
    Rcos Vulnerabilities & Security CVEs | CVE-DB