Vulnerabilities (CVE)

Filtered by vendor Adbglobal Subscribe
Filtered by product Epicentro
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-7633 1 Adbglobal 1 Epicentro 2018-12-10 7.5 HIGH 9.8 CRITICAL
Code injection in the /ui/login form Language parameter in Epicentro E_7.3.2+ allows attackers to execute JavaScript code by making a user issue a manipulated POST request.
CVE-2018-7631 1 Adbglobal 1 Epicentro 2018-12-10 7.5 HIGH 9.8 CRITICAL
Buffer Overflow in httpd in EpiCentro E_7.3.2+ allows attackers to execute code remotely via a specially crafted GET request without a leading "/" and without authentication.