Vulnerabilities (CVE)

Filtered by vendor Domoticz Subscribe
Filtered by product Domoticz
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-15480 1 Domoticz 1 Domoticz 2024-11-21 3.5 LOW 5.4 MEDIUM
Domoticz 4.10717 has XSS via item.Name.
CVE-2019-10678 1 Domoticz 1 Domoticz 2024-11-21 5.0 MEDIUM 7.5 HIGH
Domoticz before 4.10579 neglects to categorize \n and \r as insecure argument options.
CVE-2019-10664 1 Domoticz 1 Domoticz 2024-11-21 7.5 HIGH 9.8 CRITICAL
Domoticz before 4.10578 allows SQL Injection via the idx parameter in CWebServer::GetFloorplanImage in WebServer.cpp.