Showing 2 vulnerabilities on this page for io.github.talelin:lin-cms-core

Signals CISA KEV Ransomware Nuclei
Maven vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Lin CMS vulnerable to Improper Authentication

An authentication bypass in Lin-CMS v0.2.1 allows attackers to escalate privileges to Super Administrator.

CWE-287Nov 9, 2022
CVSS6.6v3.1EPSS1.02%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Hardcoded JWT Token in Lin CMS Spring Boot

An access control issue in Lin CMS Spring Boot v0.2.1 allows attackers to access the backend information and functions within the application.

CWE-668Jul 21, 20221 related artifact
CVSS7.5v3.1EPSS4.65%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX