Filtered by vendor Sibsoft
Subscriptions
Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2019-18952 | 1 Sibsoft | 1 Xfilesharing | 2024-11-21 | 9.8 Critical |
SibSoft Xfilesharing through 2.5.1 allows cgi-bin/up.cgi arbitrary file upload. This can be combined with CVE-2019-18951 to achieve remote code execution via a .html file, containing short codes, that is served over HTTP. | ||||
CVE-2019-18951 | 1 Sibsoft | 1 Xfilesharing | 2024-11-21 | 7.5 High |
SibSoft Xfilesharing through 2.5.1 allows op=page&tmpl=../ directory traversal to read arbitrary files. | ||||
CVE-2006-1944 | 1 Sibsoft | 1 Communimail | 2024-11-21 | N/A |
Multiple cross-site scripting (XSS) vulnerabilities in SibSoft CommuniMail 1.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the list_id parameter in mailadmin.cgi and (2) the form_id parameter in templates.cgi. |
Page 1 of 1.