Filtered by vendor Verydows
Subscriptions
Filtered by product Verydows
Subscriptions
Total
7 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2023-51949 | 1 Verydows | 1 Verydows | 2024-11-21 | 8.8 High |
Verydows v2.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /protected/controller/backend/role_controller | ||||
CVE-2022-28059 | 1 Verydows | 1 Verydows | 2024-11-21 | 8.1 High |
Verydows v2.0 was discovered to contain an arbitrary file deletion vulnerability via \backend\database_controller.php. | ||||
CVE-2022-28058 | 1 Verydows | 1 Verydows | 2024-11-21 | 8.1 High |
Verydows v2.0 was discovered to contain an arbitrary file deletion vulnerability via \backend\file_controller.php. | ||||
CVE-2020-23363 | 1 Verydows | 1 Verydows | 2024-11-21 | 8.8 High |
Cross Site Request Forgery (CSRF) vulnerability found in Verytops Verydows all versions that allows an attacker to execute arbitrary code via a crafted script. | ||||
CVE-2019-8363 | 1 Verydows | 1 Verydows | 2024-11-21 | N/A |
Verydows 2.0 has XSS via the index.php?c=main a parameter, as demonstrated by an a=index[XSS] value. | ||||
CVE-2019-7753 | 1 Verydows | 1 Verydows | 2024-11-21 | N/A |
Verydows 2.0 has XSS via the index.php?m=api&c=stats&a=count referrer parameter. | ||||
CVE-2019-7737 | 1 Verydows | 1 Verydows | 2024-11-21 | N/A |
A CSRF vulnerability was found in Verydows v2.0 that can add an admin account via index.php?m=backend&c=admin&a=add&step=submit. |
Page 1 of 1.