📦 Xibo

by Xibosignage

🔍 What is Xibo?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-41802

HIGH CVSS 8.1 Jul 30, 2024

An SQL injection vulnerability in Xibo CMS allows authenticated users to inject malicious SQL queries through API routes for importing JSON and Layouts containing DataSet data. This enables attackers ...

CVE-2023-33177

HIGH CVSS 8.8 May 30, 2023

This path traversal vulnerability in Xibo CMS allows authenticated users to upload specially crafted ZIP files via the layout import function, enabling them to create files outside the intended direct...

CVE-2024-41804

MEDIUM CVSS 6.5 Jul 30, 2024

An authenticated SQL injection vulnerability in Xibo CMS allows attackers to read and modify arbitrary database data by injecting malicious SQL into the 'formula' parameter when adding/editing DataSet...