Filtered by vendor Schben Subscriptions
Filtered by product Adive Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-14346 1 Schben 1 Adive 2024-08-05 N/A
Internal/Views/config.php in Schben Adive 2.0.7 allows admin/config CSRF to change a user password.
CVE-2019-14347 1 Schben 1 Adive 2024-08-05 8.8 High
Internal/Views/addUsers.php in Schben Adive 2.0.7 allows remote unprivileged users (editor or developer) to create an administrator account via admin/user/add, as demonstrated by a Python PoC script.