Filtered by vendor Traq Subscriptions
Filtered by product Traq Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-20779 1 Traq 1 Traq 2024-08-05 N/A
Traq 3.7.1 allows SQL Injection via a tickets?search= URI.
CVE-2018-20780 1 Traq 1 Traq 2024-08-05 N/A
Traq 3.7.1 allows admin/users/new CSRF to create an admin account (aka group_id=1).