Thinksaas

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 12
    Known Exploited: 0
    2
    Critical Level Threats
    0
    High Level Threats
    7
    Medium Level Threats
    3
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-6942

    ThinkSAAS Admin Panel Security Center anti.php cross site scripting

    Last Modified: Nov 13, 2025
    Published: Jul 21, 2024

    CVE-2024-6941

    ThinkSAAS do.php cross site scripting

    Last Modified: Nov 13, 2025
    Published: Jul 21, 2024

    CVE-2024-40455

    An arbitrary file deletion vulnerability in ThinkSAAS v3.7 allows attackers to delete arbitrary files via a crafted request.

    Last Modified: Apr 28, 2025
    Published: Jul 16, 2024

    CVE-2024-40456

    ThinkSAAS v3.7.0 was discovered to contain a SQL injection vulnerability via the name parameter at \system\action\update.php.

    Last Modified: Apr 28, 2025
    Published: Jul 16, 2024

    CVE-2024-33101

    A stored cross-site scripting (XSS) vulnerability in the component /action/anti.php of ThinkSAAS v3.7.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the word parameter.

    Last Modified: Apr 23, 2025
    Published: Apr 30, 2024
    Items Per Page
    Thinksaas Vulnerabilities & Security CVEs | CVE-DB