Metrics
Affected Vendors & Products
Mon, 12 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 11 May 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in 1Panel-dev MaxKB up to 1.10.7. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Knowledge Base Module. The manipulation leads to csv injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.10.8 is able to address this issue. It is recommended to upgrade the affected component. The vendor was contacted early about this disclosure. | |
Title | 1Panel-dev MaxKB Knowledge Base Module csv injection | |
Weaknesses | CWE-1236 CWE-74 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-11T20:00:06.708Z
Updated: 2025-05-12T18:56:54.462Z
Reserved: 2025-05-10T15:30:55.230Z
Link: CVE-2025-4546

Updated: 2025-05-12T18:56:48.844Z

Status : Awaiting Analysis
Published: 2025-05-11T20:15:18.107
Modified: 2025-05-12T19:15:52.150
Link: CVE-2025-4546

No data.