Vulnerabilidades en answerdev

34 resultados
Análisis Vexday

A Answerdev apresenta 34 vulnerabilidades conhecidas no histórico, com destaque para 2 críticas, porém nenhuma sob exploração ativa atualmente. A fraqueza dominante é o XSS (CWE-79), indicando deficiências em validação de entrada, e a ausência de publicações recentes sugere que o risco não está em evolução acelerada no curto prazo.

CVE-2023-0744CRITICALImproper Access Control in answerdev/answerEPSS 6.4%CVE-2023-4125HIGHWeak Password Requirements in answerdev/answerEPSS 0.9%CVE-2023-0742HIGHCross-site Scripting (XSS) - Stored in answerdev/answerEPSS 0.9%CVE-2023-0741HIGHCross-site Scripting (XSS) - DOM in answerdev/answerEPSS 0.9%CVE-2023-1537MEDIUMAuthentication Bypass by Capture-replay in answerdev/answerEPSS 0.8%CVE-2023-1543MEDIUMInsufficient Session Expiration in answerdev/answerEPSS 0.8%CVE-2023-1542HIGHBusiness Logic Errors in answerdev/answerEPSS 0.8%CVE-2023-0743HIGHCross-site Scripting (XSS) - Generic in answerdev/answerEPSS 0.7%CVE-2023-0740HIGHCross-site Scripting (XSS) - Stored in answerdev/answerEPSS 0.7%CVE-2023-0739HIGHConcurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in answerdev/answerEPSS 0.7%CVE-2023-4815HIGHMissing Authentication for Critical Function in answerdev/answerEPSS 0.7%CVE-2023-4124HIGHMissing Authorization in answerdev/answerEPSS 0.7%CVE-2023-1541MEDIUMBusiness Logic Errors in answerdev/answerEPSS 0.6%CVE-2023-1540MEDIUMObservable Response Discrepancy in answerdev/answerEPSS 0.6%CVE-2023-1538MEDIUMObservable Timing Discrepancy in answerdev/answerEPSS 0.6%CVE-2023-1240HIGHCross-site Scripting (XSS) - Stored in answerdev/answerEPSS 0.6%CVE-2023-1241HIGHCross-site Scripting (XSS) - Stored in answerdev/answerEPSS 0.6%CVE-2023-1242HIGHCross-site Scripting (XSS) - Stored in answerdev/answerEPSS 0.6%CVE-2023-1539MEDIUMImproper Restriction of Excessive Authentication Attempts in answerdev/answerEPSS 0.6%CVE-2023-1976MEDIUMPassword Aging with Long Expiration in answerdev/answerEPSS 0.6%