Wampserver

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 8
    Known Exploited: 0
    0
    Critical Level Threats
    3
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2022-36565

    Incorrect access control in the install directory (C:\Wamp64) of Wamp v3.2.6 and below allows authenticated attackers to execute arbitrary code via overwriting binaries located in the directory.

    Last Modified: Nov 21, 2024
    Published: Aug 30, 2022

    CVE-2019-11517

    WampServer before 3.1.9 has CSRF in add_vhost.php because the synchronizer pattern implemented as remediation of CVE-2018-8817 was incomplete. An attacker could add/delete any vhosts without the consent of the owner.

    Last Modified: Nov 21, 2024
    Published: Jun 10, 2019

    CVE-2018-1000848

    Wampserver version prior to version 3.1.5 contains a Cross Site Scripting (XSS) vulnerability in index.php localhost page that can result in very low. This attack appear to be exploitable via payload onmouseover. This vulnerability appears to have been fixed in 3.1.5 and later.

    Last Modified: Nov 21, 2024
    Published: Dec 20, 2018

    CVE-2018-8817

    Wampserver before 3.1.3 has CSRF in add_vhost.php.

    Last Modified: Nov 21, 2024
    Published: Mar 25, 2018

    CVE-2018-8732

    Cross-site scripting (XSS) vulnerability in WampServer 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the virtual_del parameter.

    Last Modified: Nov 21, 2024
    Published: Mar 19, 2018
    Items Per Page
    Wampserver Vulnerabilities & Security CVEs | CVE-DB