Communilink Clink Office vulnerabilities
2 known vulnerabilities affecting communilink/clink_office.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2020-6171P3MEDIUMCVSS 6.1PoCv2.02020-04-07
CVE-2020-6171 [MEDIUM] CWE-79 CVE-2020-6171: A cross-site scripting (XSS) vulnerability in the index page of the CLink Office 2.0 management cons
A cross-site scripting (XSS) vulnerability in the index page of the CLink Office 2.0 management console allows remote attackers to inject arbitrary web script or HTML via the lang parameter.
nvd
CVE-2022-29709P3HIGHCVSS 7.5v2.02022-07-25
CVE-2022-29709 [HIGH] CWE-89 CVE-2022-29709: CommuniLink Internet Limited CLink Office v2.0 was discovered to contain multiple SQL injection vuln
CommuniLink Internet Limited CLink Office v2.0 was discovered to contain multiple SQL injection vulnerabilities via the username and password parameters.
nvd