📦 Malware Information Sharing Platform

by Misp Project

🔍 What is Malware Information Sharing Platform?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-48655

CRITICAL CVSS 9.8 Nov 17, 2023

This vulnerability in MISP (Malware Information Sharing Platform) allows blind SQL injection through improperly filtered array input parameters. Attackers can exploit this to execute arbitrary SQL que...

CVE-2023-48657

CRITICAL CVSS 9.8 Nov 17, 2023

This CVE describes a time-based SQL injection vulnerability in MISP's filter handling in app/Model/AppModel.php. Attackers can exploit this to execute arbitrary SQL queries, potentially leading to dat...

CVE-2023-48659

CRITICAL CVSS 9.8 Nov 17, 2023

This vulnerability in MISP (Malware Information Sharing Platform) involves improper parameter parsing in AppController.php that enables reflected cross-site scripting (XSS). Attackers can inject malic...

CVE-2023-37306

HIGH CVSS 7.5 Jun 30, 2023

CVE-2023-37306 is an information disclosure vulnerability in MISP (Malware Information Sharing Platform) where improper handling of certificate file extensions during server synchronization leaks sens...

CVE-2023-28884

MEDIUM CVSS 6.1 Mar 27, 2023

This vulnerability allows cross-site scripting (XSS) attacks in MISP's community index page. Attackers can inject malicious scripts that execute in victims' browsers when viewing the community index. ...