Froxlor

Froxlor

42 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.05%
  • Veröffentlicht 24.03.2026 18:46:13
  • Zuletzt bearbeitet 26.03.2026 12:17:21

Froxlor is open source server administration software. Prior to version 2.3.5, the DomainZones.add API endpoint (accessible to customers with DNS enabled) does not validate the content field for several DNS record types (LOC, RP, SSHFP, TLSA). An att...

Exploit
  • EPSS 0.64%
  • Veröffentlicht 03.03.2026 22:31:58
  • Zuletzt bearbeitet 05.03.2026 21:19:02

Froxlor is open source server administration software. Prior to 2.3.4, a typo in Froxlor's input validation code (== instead of =) completely disables email format checking for all settings fields declared as email type. This allows an authenticated ...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 02.06.2025 11:18:27
  • Zuletzt bearbeitet 25.06.2025 17:36:43

Froxlor is open source server administration software. Prior to version 2.2.6, an HTML Injection vulnerability in the customer account portal allows an attacker to inject malicious HTML payloads in the email section. This can lead to phishing attacks...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 13.03.2025 17:15:37
  • Zuletzt bearbeitet 03.04.2025 18:25:43

Froxlor is open-source server administration software. A vulnerability in versions prior to 2.2.6 allows users (such as resellers or customers) to create accounts with the same email address as an existing account. This creates potential issues with ...

  • EPSS 0.88%
  • Veröffentlicht 14.05.2024 15:38:26
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Froxlor is open source server administration software. Prior to 2.1.9, a Stored Blind Cross-Site Scripting (XSS) vulnerability was identified in the Failed Login Attempts Logging Feature of the Froxlor Application. An unauthenticated User can inject ...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 03.01.2024 23:15:08
  • Zuletzt bearbeitet 21.11.2024 08:36:45

Froxlor is open source server administration software. Prior to version 2.1.2, it was possible to submit the registration form with the essential fields, such as the username and password, left intentionally blank. This inadvertent omission allowed f...

Exploit
  • EPSS 0.25%
  • Veröffentlicht 10.11.2023 01:15:07
  • Zuletzt bearbeitet 21.11.2024 08:43:04

Improper Link Resolution Before File Access in GitHub repository froxlor/froxlor prior to 2.1.0.

Exploit
  • EPSS 0.07%
  • Veröffentlicht 13.10.2023 13:15:12
  • Zuletzt bearbeitet 21.11.2024 08:36:03

Cross-site Scripting (XSS) - Stored in GitHub repository froxlor/froxlor prior to 2.0.22.

Exploit
  • EPSS 0.05%
  • Veröffentlicht 13.10.2023 01:15:56
  • Zuletzt bearbeitet 21.11.2024 08:42:01

Cross-site Scripting (XSS) - Stored in GitHub repository froxlor/froxlor prior to 2.1.0-dev1.

Exploit
  • EPSS 0.16%
  • Veröffentlicht 11.08.2023 01:15:09
  • Zuletzt bearbeitet 21.11.2024 08:34:49

Business Logic Errors in GitHub repository froxlor/froxlor prior to 2.0.22,2.1.0.