Autolab
Autolab · 10 CVEs
Course Roster vulnerable to CSV Injection in Autolab
Nov 27, 2024
download_all_submissions allows student to download another student's submissions in Autolab
Nov 25, 2024
Autolab has HTML Injection Vulnerability
Nov 18, 2024
Autolab has vulnerable submission endpoints
Nov 18, 2024
Autolab Has Misconfigured Reset Password Permissions
Oct 25, 2024
Autolab has Path Traversal vulnerability in Assessment functionality
Jan 22, 2024
Autolab tar slip in Install Assessment functionality (`GHSL-2023-081`)
May 26, 2023
Autolab tar slip in cheat checker functionality (`GHSL-2023-082`)
May 26, 2023
Autolab is vulnerable to file disclosure via remote handin feature
Jan 14, 2023
Autolab is vulnerable to remote code execution (RCE) via MOSS functionality
Jan 14, 2023
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-53260 | Course Roster vulnerable to CSV Injection in Autolab | MEDIUM | 0.47% | Nov 27, 2024 |
| CVE-2024-53258 | download_all_submissions allows student to download another student's submissions in Autolab | HIGH | 0.47% | Nov 25, 2024 |
| CVE-2024-52585 | Autolab has HTML Injection Vulnerability | LOW | 0.26% | Nov 18, 2024 |
| CVE-2024-52584 | Autolab has vulnerable submission endpoints | MEDIUM | 0.25% | Nov 18, 2024 |
| CVE-2024-49376 | Autolab Has Misconfigured Reset Password Permissions | HIGH | 0.47% | Oct 25, 2024 |
| CVE-2023-44395 | Autolab has Path Traversal vulnerability in Assessment functionality | MEDIUM | 0.60% | Jan 22, 2024 |
| CVE-2023-32676 | Autolab tar slip in Install Assessment functionality (`GHSL-2023-081`) | HIGH | 0.91% | May 26, 2023 |
| CVE-2023-32317 | Autolab tar slip in cheat checker functionality (`GHSL-2023-082`) | HIGH | 0.89% | May 26, 2023 |
| CVE-2022-41956 | Autolab is vulnerable to file disclosure via remote handin feature | MEDIUM | 1.77% | Jan 14, 2023 |
| CVE-2022-41955 | Autolab is vulnerable to remote code execution (RCE) via MOSS functionality | HIGH | 1.49% | Jan 14, 2023 |
Showing 1 to 10 of 10 CVEs