Vulnerabilidades em froxlor
43 resultadosAnálise Vexday
Froxlor apresenta 41 vulnerabilidades catalogadas, com 11 em nível crítico e 10 divulgadas nos últimos 90 dias, indicando cadência preocupante de descobertas recentes. A fraqueza dominante é XSS (CWE-79), típica de aplicações web, mas nenhuma vulnerabilidade está em exploração ativa conhecida no momento. O volume recente de críticas demanda atenção prioritária em ciclos de atualização.
CVE-2023-0315HIGHCommand Injection in froxlor/froxlorEPSS 97.7%CVE-2023-2034CRITICALUnrestricted Upload of File with Dangerous Type in froxlor/froxlorEPSS 73.2%CVE-2023-0877CRITICAL Code Injection in froxlor/froxlorEPSS 3.9%CVE-2022-3869MEDIUM Code Injection in froxlor/froxlorEPSS 1.3%CVE-2023-3172MEDIUMPath Traversal in froxlor/froxlorEPSS 1.2%CVE-2023-3173CRITICALImproper Restriction of Excessive Authentication Attempts in froxlor/froxlorEPSS 1.1%CVE-2023-0671CRITICAL Code Injection in froxlor/froxlorEPSS 1.1%CVE-2023-1307CRITICALAuthentication Bypass by Primary Weakness in froxlor/froxlorEPSS 1.1%CVE-2023-3668CRITICALImproper Encoding or Escaping of Output in froxlor/froxlorEPSS 1.0%CVE-2024-34070CRITICALFroxlor Vulnerable to Blind XSS Leading to Froxlor Application CompromiseEPSS 1.0%CVE-2023-6069CRITICALImproper Link Resolution Before File Access in froxlor/froxlorEPSS 0.8%CVE-2026-26279CRITICALFroxlor Admin-to-Root Privilege Escalation via Input Validation Bypass + OS Command InjectionEPSS 0.8%CVE-2022-3721HIGH Code Injection in froxlor/froxlorEPSS 0.8%CVE-2023-0316MEDIUMPath Traversal: '\..\filename' in froxlor/froxlorEPSS 0.7%CVE-2023-50256HIGHFroxlor username/surname AND company field BypassEPSS 0.7%CVE-2023-2666MEDIUMAllocation of Resources Without Limits or Throttling in froxlor/froxlorEPSS 0.7%CVE-2023-0572MEDIUMUnchecked Error Condition in froxlor/froxlorEPSS 0.7%CVE-2022-4868MEDIUMImproper Authorization in froxlor/froxlorEPSS 0.6%CVE-2023-0565MEDIUMBusiness Logic Errors in froxlor/froxlorEPSS 0.6%CVE-2026-30932HIGHFroxlor is vulnerable to BIND zone file injection via unsanitized DNS record content in DomainZones APIEPSS 0.5%