Lucene search

K

Clonos Security Vulnerabilities

cve
cve

CVE-2019-18418

clonos.php in ClonOS WEB control panel 19.09 allows remote attackers to gain full access via change password requests because there is no session management.

9.8CVSS

9.6AI Score

0.095EPSS

2019-10-24 08:15 PM
82
cve
cve

CVE-2019-18419

A cross-site scripting (XSS) vulnerability in index.php in ClonOS WEB control panel 19.09 allows remote attackers to inject arbitrary web script or HTML via the lang parameter.

6.1CVSS

5.9AI Score

0.001EPSS

2019-10-24 07:15 PM
72