Getflightpath / Flightpath
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-50983 | FlightPath 7.5 contains a Cross Site Scripting (XSS) vulnerability, which allows authenticated remote attackers with administrative rights to inject arbitrary… | MEDIUM | 6.1 | Nov 15, 2024 |
| CVE-2019-15227 | FlightPath 4.8.3 has XSS in the Content, Edit urgent message, and Users sections of the Admin Console. This could lead to cookie stealing and other malicious a… | MEDIUM | 6.1 | Aug 20, 2019 |
| CVE-2019-13396 | FlightPath 4.x and 5.0-x allows directory traversal and Local File Inclusion through the form_include parameter in an index.php?q=system-handle-form-submit POS… | MEDIUM | 5.3 | Jul 10, 2019 |
Showing 1 to 3 of 3 CVEs