Product
codiad
14 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-26557
CVE-2017-20178
CVE-2020-23355
CVE-2020-14042
CVE-2020-14044
CVE-2020-14043
CVE-2019-19208
CVE-2018-19423
CVE-2018-14009
CVE-2017-1000125
CVE-2017-11366
CVE-2014-9582
CVE-2014-9581
CVE-2013-7257
all versions
Codiad v2.8.4 allows reflected XSS via the components/market/dialog.php type parameter.
all versions
UNSUPPORTED WHEN ASSIGNED A vulnerability was found in Codiad 2.8.0. It has been rated as problematic. Affected by this issu
all versions
PRODUCT NOT SUPPORTED WHEN ASSIGNED Codiad 2.8.4 /componetns/user/class.user.php:Authenticate() is vulnerable in magic hash
>= 1.7.8
PRODUCT NOT SUPPORTED WHEN ASSIGNED A Cross Site Scripting (XSS) vulnerability was found in Codiad v1.7.8 and later. The vul
>= 1.7.8
PRODUCT NOT SUPPORTED WHEN ASSIGNED A Server-Side Request Forgery (SSRF) vulnerability was found in Codiad v1.7.8 and later.
>= 1.7.8
PRODUCT NOT SUPPORTED WHEN ASSIGNED A Cross Side Request Forgery (CSRF) vulnerability was found in Codiad v1.7.8 and later.
<= 2.8.4
Codiad Web IDE through 2.8.4 allows PHP Code injection.
all versions
Codiad 2.8.4 allows remote authenticated administrators to execute arbitrary code by uploading an executable file.
<= 2.8.4
Codiad through 2.8.4 allows Remote Code Execution, a different vulnerability than CVE-2017-11366 and CVE-2017-15689.
all versions
Codiad(full version) is vulnerable to write anything to configure file in the installation resulting upload a webshell.
<= 2.8.3
components/filemanager/class.filemanager.php in Codiad before 2.8.4 is vulnerable to remote command execution because shell comman
all versions
Cross-site scripting (XSS) vulnerability in components/filemanager/dialog.php in Codiad 2.4.3 allows remote attackers to inject ar
all versions
Directory traversal vulnerability in components/filemanager/download.php in Codiad 2.4.3 allows remote attackers to read arbitrary
all versions
Cross-site scripting (XSS) vulnerability in Codiad 2.0.7 allows remote attackers to inject arbitrary web script or HTML via the Pr