📦 Kodbox

by Kodcloud

🔍 What is Kodbox?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-39691

CRITICAL CVSS 9.8 Jan 16, 2024

This vulnerability in kodbox allows attackers to create administrator accounts without authentication via specially crafted GET requests. Any system running vulnerable versions of kodbox is affected, ...

CVE-2023-6849

HIGH CVSS 7.3 Dec 16, 2023

This critical Server-Side Request Forgery (SSRF) vulnerability in kodbox allows attackers to manipulate the 'path' parameter in the cover function to make unauthorized requests from the server. Attack...

CVE-2023-29790

HIGH CVSS 7.5 May 12, 2023

Kodbox versions 1.2.x through 1.3.7 have a sensitive information leakage vulnerability that allows attackers to access confidential data without authentication. This affects all organizations using vu...

CVE-2026-1066

MEDIUM CVSS 6.3 Jan 17, 2026

This vulnerability allows remote attackers to execute arbitrary commands on systems running vulnerable versions of kalcaddle kodbox. The command injection occurs through the compression handler compon...

CVE-2025-10233

MEDIUM CVSS 6.3 Sep 10, 2025

This path traversal vulnerability in kalcaddle kodbox 1.61 allows remote attackers to read or write arbitrary files by manipulating the 'path' parameter in fileGet/fileSave functions. It affects all s...

CVE-2025-9414

MEDIUM CVSS 4.7 Aug 25, 2025

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in kodbox 1.61's download handler. Attackers can manipulate the 'url' parameter to make the server send requests to internal syste...

CVE-2024-51037

MEDIUM CVSS 5.3 Nov 15, 2024

This vulnerability in kodbox v1.52.04 and earlier allows remote attackers to obtain sensitive information through the captcha feature in the password reset function. Attackers can exploit this to pote...