Belle Aerni

11 exploits Active since Jun 2023
CVE-2023-3227 WRITEUP MEDIUM WRITEUP
fossbilling/fossbilling <0.5.0 - Info Disclosure
Insufficient Granularity of Access Control in GitHub repository fossbilling/fossbilling prior to 0.5.0.
CVSS 5.7
CVE-2023-3228 WRITEUP MEDIUM WRITEUP
fossbilling <0.5.0 - Info Disclosure
Business Logic Errors in GitHub repository fossbilling/fossbilling prior to 0.5.0.
CVSS 5.7
CVE-2023-3229 WRITEUP MEDIUM WRITEUP
fossbilling <0.5.0 - Info Disclosure
Business Logic Errors in GitHub repository fossbilling/fossbilling prior to 0.5.0.
CVSS 6.5
CVE-2023-3230 WRITEUP HIGH WRITEUP
Fossbilling < 0.5.0 - Missing Authorization
Missing Authorization in GitHub repository fossbilling/fossbilling prior to 0.5.0.
CVSS 7.5
CVE-2023-3393 WRITEUP HIGH WRITEUP
fossbilling/fossbilling <0.5.1 - Code Injection
Code Injection in GitHub repository fossbilling/fossbilling prior to 0.5.1.
CVSS 7.2
CVE-2023-3394 WRITEUP MEDIUM WRITEUP
fossbilling <0.5.1 - Info Disclosure
Session Fixation in GitHub repository fossbilling/fossbilling prior to 0.5.1.
CVSS 5.4
CVE-2023-3490 WRITEUP CRITICAL WRITEUP
Fossbilling < 0.5.3 - SQL Injection
SQL Injection in GitHub repository fossbilling/fossbilling prior to 0.5.3.
CVSS 9.8
CVE-2023-3491 WRITEUP HIGH WRITEUP
Fossbilling < 0.5.3 - Unrestricted File Upload
Unrestricted Upload of File with Dangerous Type in GitHub repository fossbilling/fossbilling prior to 0.5.3.
CVSS 8.8
CVE-2023-3493 WRITEUP HIGH WRITEUP
fossbilling <0.5.3 - Info Disclosure
Improper Neutralization of Formula Elements in a CSV File in GitHub repository fossbilling/fossbilling prior to 0.5.3.
CVSS 8.0
CVE-2023-3521 WRITEUP MEDIUM WRITEUP
fossbilling/fossbilling <0.5.4 - XSS
Cross-site Scripting (XSS) - Reflected in GitHub repository fossbilling/fossbilling prior to 0.5.4.
CVSS 6.1
CVE-2023-4005 WRITEUP CRITICAL WRITEUP
fossbilling/fossbilling <0.5.5 - Info Disclosure
Insufficient Session Expiration in GitHub repository fossbilling/fossbilling prior to 0.5.5.
CVSS 9.8