Filtered by vendor Minmax Subscriptions
Filtered by product Minmax Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-5514 1 Minmax 1 Minmax 2024-11-25 9.8 Critical
MinMax CMS from MinMax Digital Technology contains a hidden administrator account with a fixed password that cannot be removed or disabled from the management interface. Remote attackers who obtain this account can bypass IP access control restrictions and log in to the backend system without being recorded in the system logs.
CVE-2020-36535 1 Minmax 1 Minmax 2024-11-21 6.3 Medium
A vulnerability classified as critical has been found in MINMAX. This affects an unknown part of the file /newsDia.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely.