Vulnerabilities (CVE)

Filtered by vendor Showdoc Subscribe
Filtered by product Showdoc
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-0362 1 Showdoc 1 Showdoc 2022-02-02 7.5 HIGH 9.8 CRITICAL
SQL Injection in Packagist showdoc/showdoc prior to 2.10.3.
CVE-2021-41745 1 Showdoc 1 Showdoc 2021-10-27 7.5 HIGH 9.8 CRITICAL
ShowDoc 2.8.3 ihas a file upload vulnerability, where attackers can use the vulnerability to obtain server permissions.
CVE-2021-36440 1 Showdoc 1 Showdoc 2021-09-15 7.5 HIGH 9.8 CRITICAL
Unrestricted File Upload in ShowDoc v2.9.5 allows remote attackers to execute arbitrary code via the 'file_url' parameter in the component AdminUpdateController.class.php'.