Vulnerabilities (CVE)

Filtered by vendor Moxa Subscribe
Filtered by product Softcms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-9333 1 Moxa 1 Softcms 2017-06-28 7.5 HIGH 9.8 CRITICAL
An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. The SoftCMS Application does not properly sanitize input that may allow a remote attacker access to SoftCMS with administrator's privilege through specially crafted input (SQL INJECTION).
CVE-2016-5792 1 Moxa 1 Softcms 2016-11-28 7.5 HIGH 9.8 CRITICAL
SQL injection vulnerability in Moxa SoftCMS before 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified fields.