jnoj CVE Vulnerabilities & CVE List (6)

Products (CPE): — CVEs: 6

jnoj vulnerability overview

Aggregates CVE and security vulnerability intelligence across all jnoj-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Common weakness patterns include vendor risk cross-site scripting and vendor risk path handling, with potential vendor impact session compromise and vendor impact file overwrite across vendor surface software deployment use cases.

Vulnerability distribution trend (last 24 months)

Showing 16 of 6 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2019-17538 Jiangnan Online Judge (aka jnoj) 0.8.0 has Directory Traversal for file reading via the web/polygon/problem/viewfile?id=1&name=../ substring. [email protected] 7.5 91.01% 2019-10-13 2024-11-21
CVE-2019-17537 Jiangnan Online Judge (aka jnoj) 0.8.0 has Directory Traversal for file deletion via the web/polygon/problem/deletefile?id=1&name=../ substring. [email protected] 7.5 1.05% 2019-10-13 2024-11-21
CVE-2019-17493 Jiangnan Online Judge (aka jnoj) 0.8.0 has XSS via the Problem[sample_input] parameter to web/admin/problem/create or web/polygon/problem/update. [email protected] 6.1 0.29% 2019-10-10 2024-11-21
CVE-2019-17491 Jiangnan Online Judge (aka jnoj) 0.8.0 has XSS via the Problem[description] parameter to web/admin/problem/create or web/polygon/problem/update. [email protected] 6.1 0.29% 2019-10-10 2024-11-21
CVE-2019-17490 app\modules\polygon\controllers\ProblemController in Jiangnan Online Judge (aka jnoj) 0.8.0 allows arbitrary file upload, as demonstrated by PHP code (with a .php filename but the image/png content type) to the web/polygon/problem/tests URI. [email protected] 8.8 0.42% 2019-10-10 2024-11-21
CVE-2019-17489 Jiangnan Online Judge (aka jnoj) 0.8.0 has XSS via the Problem[title] parameter to web/polygon/problem/create or web/polygon/problem/update or web/admin/problem/create. [email protected] 6.1 0.29% 2019-10-10 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence