Last Seen: 2025-04-22

GeneralInformation

rev-89-111-11-13.deac.net
elko.ee
    www.elko.ee

WebTechnologies

Programming languages
Tag managers
Video players
Web frameworks

OpenPorts

80 / tcp
-2100514759 | 2025-04-21T17:17:07.331189
443 / tcp
-1443241341 | 2025-04-22T11:33:50.364971

Vulnerabilities

Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.

2021(3)
CVE-2021-43836
8.5Sulu is an open-source PHP content management system based on the Symfony framework. In affected versions an attacker can read arbitrary local files via a PHP file include. In a default configuration this also leads to remote code execution. The problem is patched with the Versions 1.6.44, 2.2.18, 2.3.8, 2.4.0. For users unable to upgrade overwrite the service `sulu_route.generator.expression_token_provider` and wrap the translator before passing it to the expression language.
CVE-2021-41169
6.2Sulu is an open-source PHP content management system based on the Symfony framework. In versions before 1.6.43 are subject to stored cross site scripting attacks. HTML input into Tag names is not properly sanitized. Only admin users are allowed to create tags. Users are advised to upgrade.
CVE-2021-32737
8.4Sulu is an open-source PHP content management system based on the Symfony framework. In versions of Sulu prior to 1.6.41, it is possible for a logged in admin user to add a script injection (cross-site-scripting) in the collection title. The problem is patched in version 1.6.41. As a workaround, one may manually patch the affected JavaScript files in lieu of updating.



Contact Us

Shodan ® - All rights reserved