Filtered by vendor Ocproducts Subscriptions
Filtered by product Composr Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-46360 1 Ocproducts 1 Composr 2024-08-04 8.8 High
Authenticated remote code execution (RCE) in Composr-CMS 10.0.39 and earlier allows remote attackers to execute arbitrary code via uploading a PHP shell through /adminzone/index.php?page=admin-commandr.
CVE-2021-30149 1 Ocproducts 1 Composr 2024-08-03 9.8 Critical
Composr 10.0.36 allows upload and execution of PHP files.
CVE-2021-30150 1 Ocproducts 1 Composr 2024-08-03 6.1 Medium
Composr 10.0.36 allows XSS in an XML script.