Vendorsit-novumopenitcockpitany version
Vulnerabilities

it-novum openITCOCKPIT any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

16CVEs
CVE-2020-10789
openITCOCKPIT before 3.7.3 has a web-based terminal that allows attackers to execute arbitrary OS commands via shell metacharacters that are mishandled on an su command line in app/Lib/SudoMessageInterface.php.
Published 2020-03-25 · Modified
10.0EPSS 0.020
CVE-2019-15490
openITCOCKPIT before 3.7.1 allows code injection, aka RVID 1-445b21.
Published 2019-08-23 · Modified
9.8EPSS 0.017
CVE-2019-15494
openITCOCKPIT before 3.7.1 allows SSRF, aka RVID 5-445b21.
Published 2019-08-23 · Modified
9.8EPSS 0.015
CVE-2020-10788
openITCOCKPIT before 3.7.3 uses the 1fea123e07f730f76e661bced33a94152378611e API key rather than generating a random API Key for WebSocket connections.
Published 2020-03-25 · Modified
9.1EPSS 0.016
CVE-2026-24893
openITCOCKPIT has Authenticated Command Injection Leading to Remote Code Execution via Host Address Macro Expansion
Published 2026-04-14 · Analyzed
8.8EPSS 0.014
CVE-2026-24892
openITCOCKPIT has Unsafe Deserialization in openITCOCKPIT Changelog Handling
Published 2026-02-20 · Analyzed
8.8EPSS 0.008
CVE-2019-15491
openITCOCKPIT before 3.7.1 has CSRF, aka RVID 2-445b21.
Published 2019-08-23 · Modified
8.8EPSS 0.006
CVE-2020-10792
openITCOCKPIT through 3.7.2 allows remote attackers to configure the self::DEVELOPMENT or self::STAGING option by placing a hostname containing "dev" or "staging" in the HTTP Host header.
Published 2020-03-20 · Modified
7.5EPSS 0.019
CVE-2019-15493
openITCOCKPIT before 3.7.1 allows deletion of files, aka RVID 4-445b21.
Published 2019-08-23 · Modified
7.5EPSS 0.012
CVE-2026-24891
openITCOCKPIT has Unsafe PHP Deserialization in Gearman Worker Allowing Conditional Object Injection
Published 2026-02-20 · Analyzed
7.5EPSS 0.004
CVE-2020-10791
app/Plugin/GrafanaModule/Controller/GrafanaConfigurationController.php in openITCOCKPIT before 3.7.3 allows remote authenticated users to trigger outbound TCP requests (aka SSRF) via the Test Connection feature (aka testGrafanaConnection) of the Grafana Module.
Published 2020-03-25 · Modified
6.5EPSS 0.012
CVE-2023-3218
Race Condition within a Thread in it-novum/openitcockpit
Published 2023-06-13 · Modified
6.5EPSS 0.005
CVE-2019-10227
openITCOCKPIT before 3.7.1 has reflected XSS in the 404-not-found component.
Published 2019-12-31 · Modified
6.11 PoCEPSS 0.012
CVE-2019-15492
openITCOCKPIT before 3.7.1 has reflected XSS, aka RVID 3-445b21.
Published 2019-08-23 · Modified
6.1EPSS 0.008
CVE-2020-10790
openITCOCKPIT before 3.7.3 has unnecessary files (such as Lodash files) under the web root, which leads to XSS.
Published 2020-03-25 · Modified
5.4EPSS 0.009
CVE-2023-3520
Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in it-novum/openitcockpit
Published 2023-07-06 · Modified
4.6EPSS 0.003