Vulnerabilidades em owen2345
14 resultadosAnálise Vexday
O fornecedor owen2345 apresenta um perfil de risco contido, com apenas 4 vulnerabilidades catalogadas, nenhuma sob exploração ativa conhecida. Dois problemas críticos (CVSS alto) relacionados principalmente a path traversal (CWE-22) representam a exposição dominante, porém sem evidência de ataques em andamento, e o portfólio não registra novas vulnerabilidades nos últimos 90 dias.
CVE-2024-46986CRITICALArbitrary file write leading to RCE in Camaleon CMSEPSS 41.0%CVE-2024-46987HIGHArbitrary path traversal in Camaleon CMSEPSS 14.6%CVE-2026-66748HIGHCamaleon CMS 2.1.1 - 2.9.1 Authenticated RCE via select_eval Custom FieldEPSS 1.1%CVE-2026-73330HIGHCamaleonCMS 2.9.1 Server-Side Template Injection via test_email ActionEPSS 0.8%CVE-2026-1776MEDIUMCamaleon CMS AWS Uploader Authenticated Path Traversal Arbitrary File ReadEPSS 0.7%CVE-2025-2304CRITICALCamaleon CMS Privilege EscalationEPSS 0.6%CVE-2026-56721HIGHCamaleonCMS 2.9.2 Privilege Escalation via Parameter Confusion in UsersControllerEPSS 0.5%CVE-2026-67616MEDIUMCamaleon CMS 2.9.2 Missing Authorization via /admin/post_type drafts endpointEPSS 0.4%CVE-2026-73332CRITICALCamaleonCMS cama_contact_form Plugin Stored XSS via before_html FieldEPSS 0.4%CVE-2026-73329CRITICALCamaleonCMS Stored XSS via Draft Post Title Creation EndpointEPSS 0.4%CVE-2026-73326HIGHCamaleonCMS Missing Authorization via Plugin Administration EndpointsEPSS 0.4%CVE-2026-73331HIGHCamaleonCMS 2.9.1 Authenticated SQL Injection via Post Slug FieldEPSS 0.4%CVE-2026-56720MEDIUMCamaleonCMS 2.9.2 and earlier Missing Authorization via profile ActionEPSS 0.3%CVE-2026-86100MEDIUMCamaleon CMS 2.7.5 through 2.9.1 SSRF via HTTP Redirect in Upload from URLEPSS 0.3%