CVE-2024-5312
- EPSS 0.32%
- Veröffentlicht 24.05.2024 11:15:10
- Zuletzt bearbeitet 21.11.2024 09:47:24
PHP Server Monitor, version 3.2.0, is vulnerable to an XSS via the /phpservermon-3.2.0/vendor/phpmailer/phpmailer/test_script/index.php page in all visible parameters. An attacker could create a specially crafted URL, send it to a victim and retrieve...
CVE-2021-4241
- EPSS 0.28%
- Veröffentlicht 15.11.2022 23:15:14
- Zuletzt bearbeitet 21.11.2024 06:37:13
A vulnerability, which was classified as problematic, was found in phpservermon. Affected is the function setUserLoggedIn of the file src/psm/Service/User.php. The manipulation leads to use of predictable algorithm in random number generator. The exp...
CVE-2021-4240
- EPSS 0.24%
- Veröffentlicht 15.11.2022 23:15:10
- Zuletzt bearbeitet 21.11.2024 06:37:12
A vulnerability, which was classified as problematic, was found in phpservermon. This affects the function generatePasswordResetToken of the file src/psm/Service/User.php. The manipulation leads to use of predictable algorithm in random number genera...
CVE-2021-4097
- EPSS 0.24%
- Veröffentlicht 12.12.2021 00:15:07
- Zuletzt bearbeitet 21.11.2024 06:36:53
phpservermon is vulnerable to Improper Neutralization of CRLF Sequences
CVE-2018-18921
- EPSS 0.13%
- Veröffentlicht 18.12.2018 22:29:04
- Zuletzt bearbeitet 21.11.2024 03:56:52
PHP Server Monitor before 3.3.2 has CSRF, as demonstrated by a Delete action.