CVE-2025-7060
- EPSS 0.08%
- Veröffentlicht 04.07.2025 11:15:51
- Zuletzt bearbeitet 01.10.2025 13:31:16
A vulnerability was found in Monitorr up to 1.7.6m. It has been classified as problematic. This affects an unknown part of the file assets/config/_installation/mkdbajax.php of the component Installer. The manipulation of the argument datadir leads to...
CVE-2023-26775
- EPSS 6.41%
- Veröffentlicht 04.04.2023 15:15:09
- Zuletzt bearbeitet 21.11.2024 07:51:55
File Upload vulnerability found in Monitorr v.1.7.6 allows a remote attacker t oexecute arbitrary code via a crafted file upload to the assets/php/upload.php endpoint.
CVE-2023-26776
- EPSS 1.1%
- Veröffentlicht 04.04.2023 15:15:09
- Zuletzt bearbeitet 13.02.2025 16:15:39
Cross Site Scripting vulnerability found in Monitorr v.1.7.6 allows a remote attacker to execute arbitrary code via the title parameter of the post_receiver-services.php file.
CVE-2020-28872
- EPSS 0.55%
- Veröffentlicht 12.04.2021 14:15:14
- Zuletzt bearbeitet 21.11.2024 05:23:13
An authorization bypass vulnerability in Monitorr v1.7.6m in Monitorr/assets/config/_installation/_register.php allows an unauthorized person to create valid credentials.
CVE-2020-28871
- EPSS 94.05%
- Veröffentlicht 10.02.2021 01:15:14
- Zuletzt bearbeitet 21.11.2024 05:23:13
Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the server-side via an insecure file upload.