Limbas

Vendor:

First CVE: Apr 28, 2022 · Active for 4 years

3
Total CVEs
More Total CVEs than 64% of tracked products
1.5
Avg CVEs / Year
Higher CVE frequency than 56% of tracked products
6.4
Avg CVSS
Higher Avg CVSS than 27% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Limbas over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 28, 2022
4 years ago
Most Recent CVE
Apr 29, 2024
816 days ago

CVE Severity & Scoring

Limbas3 CVEs
All CVEs352,294 CVEs
Medium
Attack Vector
Local0 (0.0%)
Network3 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (66.7%)
High1 (33.3%)
Unknown0 (0.0%)
User Interaction
None2 (66.7%)
Unknown0 (0.0%)
Required1 (33.3%)
Privileges Required
Low0 (0.0%)
High2 (66.7%)
None1 (33.3%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (3 CVEs).

3 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Limbas 4.3.36.1319 is vulnerable to Cross Site Scripting (XSS).
Apr 28, 20226.121NONO
Limbas up to v5.2.14 was discovered to contain a SQL injection vulnerability via the ftid parameter.
Apr 29, 20246.519NONO
A vulnerability classified as problematic was found in Limbas 5.2.14. Affected by this vulnerability is an unknown functionality of the file main_admin.php. The manipulation of the
Feb 23, 20246.619NONO

Exploit Exposure

Signals from CVEs in this product scope (3 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (3 CVEs).

Media Mentions

Signals from CVEs in this product scope (3 CVEs).

Top CNAs Publishing CVEs For Limbas

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
5.2.1416.60.7%00
4.3.36.131916.11.1%00