uniong webitr CVE Vulnerabilities (11)

CVEs: 11 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting uniong webitr (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 111 of 11 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-13771 WebITR developed by Uniong has an Arbitrary File Read vulnerability, allowing authenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files. [email protected] 7.1 0.39% 2025-11-28 2026-06-17
CVE-2025-13770 WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents. [email protected] 7.1 0.28% 2025-11-28 2026-06-17
CVE-2025-13769 WebITR developed by Uniong has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents. [email protected] 7.1 0.28% 2025-11-28 2026-06-17
CVE-2025-13768 WebITR developed by Uniong has an Authentication Bypass vulnerability, allowing authenticated remote attackers to log into the system as any user by modifying a specific parameter. Attackers must first obtain a user ID to exploit this vulnerability. [email protected] 7.7 0.35% 2025-11-28 2026-06-17
CVE-2025-9259 WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files. [email protected] 7.1 0.50% 2025-08-22 2026-06-17
CVE-2025-9258 WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files. [email protected] 7.1 0.50% 2025-08-22 2026-06-17
CVE-2025-9257 WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files. [email protected] 7.1 0.50% 2025-08-22 2026-06-17
CVE-2025-9256 WebITR developed by Uniong has an Arbitrary File Reading vulnerability, allowing remote attackers with regular privileges to exploit Absolute Path Traversal to download arbitrary system files. [email protected] 7.1 0.50% 2025-08-22 2026-06-17
CVE-2025-9255 WebITR developed by Uniong has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read database contents. [email protected] 8.7 0.49% 2025-08-22 2026-06-17
CVE-2025-9254 WebITR developed by Uniong has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to log into the system as arbitrary users by exploiting a specific functionality. [email protected] 9.3 0.61% 2025-08-22 2026-06-17
CVE-2024-8586 WebITR from Uniong has an Open Redirect vulnerability, which allows unauthorized remote attackers to exploit this vulnerability to forge URLs. Users, believing they are accessing a trusted domain, can be redirected to another page, potentially leading to phishing attacks. [email protected] 6.1 0.35% 2024-09-09 2026-06-17
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence