Vulnerabilities (CVE)

Filtered by vendor It-novum Subscribe
Filtered by product Openitcockpit
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-15493 1 It-novum 1 Openitcockpit 2020-08-24 6.4 MEDIUM 7.5 HIGH
openITCOCKPIT before 3.7.1 allows deletion of files, aka RVID 4-445b21.
CVE-2020-10792 1 It-novum 1 Openitcockpit 2020-03-25 5.0 MEDIUM 7.5 HIGH
openITCOCKPIT through 3.7.2 allows remote attackers to configure the self::DEVELOPMENT or self::STAGING option by placing a hostname containing "dev" or "staging" in the HTTP Host header.
CVE-2019-15491 1 It-novum 1 Openitcockpit 2019-08-26 6.8 MEDIUM 8.8 HIGH
openITCOCKPIT before 3.7.1 has CSRF, aka RVID 2-445b21.