VYPR

doorGets

by Itodaro

CVEs (2)

  • CVE-2019-11618CriApr 30, 2019
    risk 0.64cvss 9.8epss 0.02

    doorGets 7.0 has a default administrator credential vulnerability. A remote attacker can use this vulnerability to gain administrator privileges for the creation and modification of articles via an H0XZlT44FcN1j9LTdFc5XRXhlF30UaGe1g3cZY6i1K9 access_token in a…

  • CVE-2019-11610HigApr 30, 2019
    risk 0.49cvss 7.5epss 0.04

    doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/downloaddir.php. A remote unauthenticated attacker can exploit this vulnerability to obtain server-sensitive information.