Lukas Bestle
10 exploits
Active since Dec 2020
Kirby <3.5.8.3, 3.6.6.3, 3.7.5.2, 3.8.4.1, 3.9.6 - XXE
CVSS 6.8
Kirby CMS <3.4.5 & Kirby Panel <2.5.14 - RCE
CVSS 6.8
Kirby 3.5.0-3.5.7.1 - Authenticated Stored Cross-Site Scripting via Writer Field
CVSS 7.3
Kirby < 3.5.8.1 - Stored Cross-Site Scripting in Multiselect Field Autocomplete
CVSS 5.9
Kirby <3.5.8.3, 3.6.6.3, 3.7.5.2, 3.8.4.1, 3.9.6 - Field Injection
CVSS 7.1
Kirby <3.5.8.3, 3.6.6.3, 3.7.5.2, 3.8.4.1, 3.9.6 - Info Disclosure
CVSS 7.3
Kirby <3.5.8.3, 3.6.6.3, 3.7.5.2, 3.8.4.1, 3.9.6 - Info Disclosure
CVSS 5.7
Kirby < 3.5.8.3, < 3.6.6.3, < 3.7.5.2, < 3.8.4.1, < 3.9.6 - Denial of Service via Excessive Password Length
CVSS 5.3
Kirby CMS 4.1.0 - Stored Cross-Site Scripting via Edit Content Layout Link Field
CVSS 6.1
Kirby 4.0.0-4.1.0 - Stored Cross-Site Scripting via Custom Link Field
CVSS 4.6