📦 X\/p Messenger

by Ponton

🔍 What is X\/p Messenger?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-45887

CRITICAL CVSS 9.8 Mar 13, 2022

This vulnerability allows authenticated administrators of PONTON X/P Messenger to upload ZIP files containing executable scripts via a path traversal flaw. Attackers can achieve remote code execution ...

CVE-2021-45886

HIGH CVSS 8.8 Mar 13, 2022

PONTON X/P Messenger versions before 3.11.2 have globally valid anti-CSRF tokens, allowing attackers to use low-privileged user tokens to perform actions as higher-privileged users. This affects all u...