Vulnerabilities (CVE)

Filtered by vendor Machform Subscribe
Filtered by product Machform
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-20102 1 Machform 1 Machform 2021-07-02 6.8 MEDIUM 8.8 HIGH
Machform prior to version 16 is vulnerable to cross-site request forgery due to a lack of CSRF tokens in place.
CVE-2021-20104 1 Machform 1 Machform 2021-07-02 6.8 MEDIUM 8.1 HIGH
Machform prior to version 16 is vulnerable to unauthenticated remote code execution due to insufficient sanitization of file attachments uploaded with forms through upload.php.