Mr-cornerCVEs & Vulnerabilities
2 CVEs affecting Mr-corner products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
amazing little poll 4
CVE-2023-6769MEDIUM
Stored XSS vulnerability in Amazing Little Poll, affecting versions 1.3 and 1.4. This vulnerability allows a remote attacker to store a malicious JavaScript payload in the "lp_admin.php" file in the "question" and "item" parameters. This vulnerability could lead to malicious JavaScript execution while the page is loading.
20 Dec 2023
4.6
CVSS
CVE-2023-6768CRITICAL
Authentication bypass vulnerability in Amazing Little Poll affecting versions 1.3 and 1.4. This vulnerability could allow an unauthenticated user to access the admin panel without providing any credentials by simply accessing the "lp_admin.php?adminstep=" parameter.
20 Dec 2023
9.8
CVSS
← PrevPage 1 / 1Next →