Browse all 5 CVE security advisories affecting Ofofonobs. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Ofofonobs operates as a web application framework primarily used for building dynamic content management systems. Historically, it has been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for its five recorded CVEs. The framework's security posture has been characterized by insufficient input validation and inadequate access controls in previous versions. While no major public security incidents have been widely documented, the consistent pattern of vulnerabilities in its core components suggests a need for rigorous security hardening and regular updates for implementations handling sensitive data.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-4310 | Cross-site Scripting (XSS) vulnerability in HubBank — HubBankCWE-79 | 6.3 | Medium | 2024-04-29 |
| CVE-2024-4309 | SQL injection vulnerability in HubBank — HubBankCWE-89 | 8.1 | High | 2024-04-29 |
| CVE-2024-4307 | SQL injection vulnerability in HubBank — HubBankCWE-89 | 8.1 | High | 2024-04-29 |
| CVE-2024-4308 | SQL injection vulnerability in HubBank — HubBankCWE-89 | 8.1 | High | 2024-04-29 |
| CVE-2024-4306 | Unrestricted Upload of File with Dangerous Type vulnerability in HubBank — HubBankCWE-434 | 9.9 | Critical | 2024-04-29 |
This page lists every published CVE security advisory associated with Ofofonobs. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.