Flightairmap is a web-based flight-tracking and air-navigation application with a narrow product scope centered on its core mapping and tracking platform. Observed vulnerabilities have centered on web application input-handling issues, specifically cross-site scripting weaknesses in page-generation contexts; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Flightairmap over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-6397MEDIUM An issue was discovered in FlightAirMap v1.0-beta.10. The vulnerability exists due to insufficient filtration of user-supplied data in multiple parameters passed to several *-sub-m | Mar 2, 2017 | 6.1 | 22 | NO | NO |
CVE-2018-1000642MEDIUM FlightAirMap version <=v1.0-beta.21 contains a Cross Site Scripting (XSS) vulnerability in GET variable used within registration sub menu page that can result in unauthorised actio | Aug 20, 2018 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Flightairmap.
Media articles that mention a CVE ID that affects a product developed by Flightairmap — matched by CVE ID, not by vendor name.