Lars Kiesow
13 exploits
Active since Jan 2020
Opencast < 9.10 - HTTP Method Spoofing via URL Parameter
CVSS 7.5
Opencast < 7.9 - Man-in-the-Middle Attack via Disabled HTTPS Hostname Verification
CVSS 4.8
Opencast < 7.6 - Improper Authentication via Remember-Me Cookie
CVSS 8.7
Opencast < 7.6 - Use of Hard-coded Credentials via Remember-Me Cookie
CVSS 6.8
feedgen < 0.9.0 - XML Denial of Service via Entity Expansion
CVSS 4.4
Opencast < 8.1 - Use of Broken Cryptographic Algorithm via MD5 Password Hashing
CVSS 7.7
Opencast < 7.6 - Path Traversal and Arbitrary File Write via Media Package Identifier
CVSS 7.7
Opencast < 7.6 - Improper Authorization via ROLE_COURSE_ADMIN User Creation
CVSS 4.8
Opencast < 9.2 - Incorrect Authorization via Series Access Control Overwrite
CVSS 5.4
Opencast < 9.6 - Authenticated Denial of Service via XML Entity Expansion
CVSS 8.1
Opencast < 9.10 - HTTP Method Spoofing via URL Parameter
CVSS 7.5
Opencast < 10.14 - Authenticated Organization Barrier Bypass via Ingest REST Interface
CVSS 5.4
Opencast < 17.7 - Relative Path Traversal in UI Config Module
CVSS 5.3