Vulnerabilities in pwndoc
6 resultsVexday analysis
O pwndoc apresenta 6 vulnerabilidades catalogadas, nenhuma crítica e sem evidência de exploração ativa. A fraqueza dominante é path traversal (CWE-22), típica de validação insuficiente de entrada, e nenhuma vulnerabilidade foi publicada nos últimos 90 dias, sugerindo risco estabilizado.
CVE-2025-27410MEDIUMPwnDoc Arbitrary File Write to RCE using Path Traversal in backup restore as adminEPSS 2.1%CVE-2025-27413MEDIUMPwnDoc Arbitrary File Write to RCE using Path Traversal in template update from backup templates.jsonEPSS 1.2%CVE-2024-55602HIGHPenDoc vulnerable to Arbitrary File Read on updating and downloading templates using Path TraversalEPSS 0.7%CVE-2024-55652MEDIUMPwnDoc Server-Side Template Injection vulnerability - Sandbox Escape to RCE using custom filtersEPSS 0.7%CVE-2024-55653MEDIUMpwndoc's UnhandledPromiseRejection on audits causes Denial of Service (DoS)EPSS 0.6%CVE-2025-23044MEDIUMCross-Site Request Forgery (CSRF) allows creating admin account with POST requestEPSS 0.2%