CVE-2026-2145
- EPSS 0.01%
- Veröffentlicht 08.02.2026 09:15:52
- Zuletzt bearbeitet 09.02.2026 16:08:35
A vulnerability was identified in cym1102 nginxWebUI up to 4.3.7. The impacted element is an unknown function of the file /adminPage/conf/check of the component Web Management Interface. Such manipulation of the argument nginxDir leads to cross site ...
CVE-2024-3740
- EPSS 0.07%
- Veröffentlicht 13.04.2024 21:15:48
- Zuletzt bearbeitet 21.08.2025 00:50:14
A vulnerability, which was classified as critical, has been found in cym1102 nginxWebUI up to 3.9.9. This issue affects the function exec of the file /adminPage/conf/reload. The manipulation of the argument nginxExe leads to deserialization. The atta...
CVE-2024-3739
- EPSS 1.12%
- Veröffentlicht 13.04.2024 19:15:53
- Zuletzt bearbeitet 21.08.2025 00:51:15
A vulnerability classified as critical was found in cym1102 nginxWebUI up to 3.9.9. This vulnerability affects unknown code of the file /adminPage/main/upload. The manipulation of the argument file leads to os command injection. The attack can be ini...
CVE-2024-3738
- EPSS 0.06%
- Veröffentlicht 13.04.2024 18:15:07
- Zuletzt bearbeitet 21.08.2025 00:52:54
A vulnerability classified as critical has been found in cym1102 nginxWebUI up to 3.9.9. This affects the function handlePath of the file /adminPage/conf/saveCmd. The manipulation of the argument nginxPath leads to improper certificate validation. It...
CVE-2024-3737
- EPSS 0.08%
- Veröffentlicht 13.04.2024 17:15:50
- Zuletzt bearbeitet 21.08.2025 15:09:55
A vulnerability was found in cym1102 nginxWebUI up to 3.9.9. It has been rated as critical. Affected by this issue is the function findCountByQuery of the file /adminPage/www/addOver. The manipulation of the argument dir leads to path traversal. The ...
CVE-2024-3736
- EPSS 0.05%
- Veröffentlicht 13.04.2024 14:15:07
- Zuletzt bearbeitet 21.08.2025 15:04:07
A vulnerability was found in cym1102 nginxWebUI up to 3.9.9. It has been declared as problematic. Affected by this vulnerability is the function upload of the file /adminPage/main/upload. The manipulation leads to unrestricted upload. The attack can ...