Releases39
Frequency2 months 4 weeks
Last Release
Stars201
Modélisation Conceptuelle de Données. Nickel. Ni souris.

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL

Mocodo Mocodo Online 4.2.6 and below is vulnerable to Remote Code Execution via /web/rewrite.php.

9.8 CRITICAL

Mocodo Mocodo Online 4.2.6 and below does not properly sanitize the sql_case input field in /web/generate.php, allowing remote attackers to execute arbitrary commands and potentially command injection, leading to remote code execution (RCE) under certain conditions.