Artur Heinze
20 exploits
Active since Aug 2022
Cockpit CMS Missing Authorization in Bucket File Storage API
CVSS 8.8
Cockpit CMS Path Traversal via Bucket Name in Bucket File Storage API
CVSS 8.8
Cockpit CMS 2.14.0 Stored XSS via Set Field Display Template
CVSS 5.4
cockpit-hq/cockpit < 2.4.1 - Arbitrary File Upload via Extension Filter Bypass
CVSS 7.5
Cockpit < 2.2.0 - Insufficient Session Expiration
CVSS 9.8
GitHub cockpit-hq/cockpit <2.2.2 - Info Disclosure
CVSS 9.8
Cockpit <2.3.8 - Privilege Escalation
CVSS 8.8
Cockpit <2.3.9-dev - Info Disclosure
CVSS 5.4
cockpit-hq/cockpit < 2.4.0 - Use of Platform-Dependent Third Party Components
CVSS 5.5
Cockpit < 2.4.1 - Unrestricted Upload of File with Dangerous Type
CVSS 8.8
Cockpit < 2.6.3 - PHP Remote File Inclusion
CVSS 8.8
cockpit < 2.6.3 - Stored Cross-Site Scripting
CVSS 5.4
Cockpit < 2.4.3 - Stored Cross-Site Scripting
CVSS 6.1
Cockpit < 2.6.4 - Stored Cross-Site Scripting
CVSS 5.4
Cockpit < 2.6.3 - Stored Cross-Site Scripting
CVSS 4.8
Cockpit < 2.6.4 - Reflected Cross-Site Scripting
CVSS 6.1
Cockpit < 2.6.4 - Stored Cross-Site Scripting
CVSS 5.4
Cockpit < 2.6.4 - Reflected Cross-Site Scripting
CVSS 6.1
cockpit-hq/cockpit < 2.4.1 - Arbitrary File Upload via Extension Filter Bypass
CVSS 7.5
Cockpit < 2.11.4 - Cross-Site Scripting via User Save Endpoint
CVSS 3.5