Teller is a modestly represented vendor whose vulnerability footprint centers on a small set of products including Slanger and Teller itself, with the observed signal concentrated on deserialization of untrusted data and cross-site scripting. These weakness classes point to input-handling and data-processing exposure typical of web-facing application components; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Teller over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-1010306CRITICAL Slanger 0.6.0 is affected by: Remote Code Execution (RCE). The impact is: A remote attacker can execute arbitrary commands by sending a crafted request to the server. The component | Jul 15, 2019 | 9.8 | 32 | NO | NO |
CVE-2023-42362MEDIUM An arbitrary file upload vulnerability in Teller Web App v.4.4.0 allows a remote attacker to execute arbitrary commands and obtain sensitive information via uploading a crafted fil | Sep 14, 2023 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Teller.
Media articles that mention a CVE ID that affects a product developed by Teller — matched by CVE ID, not by vendor name.