talelin CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

talelin vulnerability overview

Aggregates CVE and security vulnerability intelligence across all talelin-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and related problems; some flaws may lead to vendor impact session compromise, affecting vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-41600 Insecure Permissions vulnerability in lin-CMS Springboot v.0.2.1 and before allows a remote attacker to obtain sensitive information via the login method in the UserController.java component. [email protected] 7.5 0.45% 2024-07-19 2025-03-18
CVE-2022-32430 An access control issue in Lin CMS Spring Boot v0.2.1 allows attackers to access the backend information and functions within the application. [email protected] 7.5 3.44% 2022-07-21 2024-11-21
CVE-2020-18701 Incorrect Access Control in Lin-CMS-Flask v0.1.1 allows remote attackers to obtain sensitive information and/or gain privileges due to the application not invalidating a user's authentication token upon logout, which allows for replaying packets. [email protected] 9.8 2.28% 2021-08-16 2024-11-21
CVE-2020-18699 Cross Site Scripting (XSS) in Lin-CMS-Flask v0.1.1 allows remote attackers to execute arbitrary code by entering scripts in the the 'Username' parameter of the in component 'app/api/cms/user.py'. [email protected] 6.1 1.27% 2021-08-16 2024-11-21
CVE-2020-18698 Improper Authentication in Lin-CMS-Flask v0.1.1 allows remote attackers to launch brute force login attempts without restriction via the 'login' function in the component 'app/api/cms/user.py'. [email protected] 9.8 2.03% 2021-08-16 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence