Gina Häußge
16 exploits
Active since Aug 2022
OctoPrint <= 1.11.2 - Authenticated OS Command Injection via Crafted Filename in Event Handler
CVSS 8.8
OctoPrint <= 1.11.2 - Authenticated OS Command Injection via Crafted Filename in Event Handler
CVSS 8.8
OctoPrint - Authentication Bypass via Brute Force
CVSS 7.5
GitHub octoprint/octoprint <1.8.3 - File Injection
CVSS 5.4
OctoPrint < 1.8.3 - Insufficient Session Expiration
CVSS 4.4
octoprint/octoprint <1.8.3 - Info Disclosure
CVSS 7.8
octoprint/octoprint <1.8.3 - Privilege Escalation
CVSS 8.8
octoprint/octoprint <1.8.3 - Special Element Injection
CVSS 6.0
OctoPrint <= 1.9.2 - Authenticated Remote Code Execution via GCODE Script Rendering
CVSS 6.2
OctoPrint <= 1.9.3 - Unverified Password Change
CVSS 4.2
OctoPrint < 1.10.0 - Stored Cross-Site Scripting via Webcam Snapshot URL
CVSS 4.0
OctoPrint <= 1.10.0 - Unauthenticated Authentication Bypass via X-Forwarded-For Header Spoofing
CVSS 7.1
OctoPrint <= 1.10.3 - Authentication Bypass via Login Redirect Spoofing
CVSS 4.3
OctoPrint <1.11.1 - Info Disclosure
CVSS 5.4
OctoPrint <= 1.11.1 - Unauthenticated Denial of Service via Malformed Multipart Form Data
CVSS 6.5
OctoPrint <1.11.5 - Info Disclosure
CVSS 5.9