Filtered by vendor Cbot Subscriptions
Filtered by product Cbot Core Subscriptions
Total 6 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-2886 1 Cbot 2 Cbot Core, Cbot Panel 2023-11-02 4.3 Medium
Missing Origin Validation in WebSockets vulnerability in CBOT Chatbot allows Content Spoofing Via Application API Manipulation.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2885 1 Cbot 2 Cbot Core, Cbot Panel 2023-08-05 8.1 High
Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in CBOT Chatbot allows Adversary in the Middle (AiTM).This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2887 1 Cbot 2 Cbot Core, Cbot Panel 2023-08-02 9.8 Critical
Authentication Bypass by Spoofing vulnerability in CBOT Chatbot allows Authentication Bypass.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2884 1 Cbot 2 Cbot Core, Cbot Panel 2023-08-02 9.8 Critical
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG), Use of Insufficiently Random Values vulnerability in CBOT Chatbot allows Signature Spoofing by Key Recreation.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2882 1 Cbot 2 Cbot Core, Cbot Panel 2023-08-02 9.8 Critical
Generation of Incorrect Security Tokens vulnerability in CBOT Chatbot allows Token Impersonation, Privilege Abuse.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.
CVE-2023-2883 1 Cbot 2 Cbot Core, Cbot Panel 2023-05-31 8.8 High
Authorization Bypass Through User-Controlled Key vulnerability in CBOT Chatbot allows Authentication Abuse, Authentication Bypass.This issue affects Chatbot: before Core: v4.0.3.4 Panel: v4.0.3.7.