Vulnerabilities (CVE)

Filtered by vendor Iscripts Subscribe
Filtered by product Eswap
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-11373 1 Iscripts 1 Eswap 2018-06-25 7.5 HIGH 9.8 CRITICAL
iScripts eSwap v2.4 has SQL injection via the "salelistdetailed.php" User Panel ToId parameter.
CVE-2018-11372 1 Iscripts 1 Eswap 2018-06-25 7.5 HIGH 9.8 CRITICAL
iScripts eSwap v2.4 has SQL injection via the wishlistdetailed.php User Panel ToId parameter.