VYPR

Epicentro

by Adbglobal

CVEs (3)

  • CVE-2018-7633CriOct 9, 2018
    risk 0.64cvss 9.8epss 0.01

    Code injection in the /ui/login form Language parameter in Epicentro E_7.3.2+ allows attackers to execute JavaScript code by making a user issue a manipulated POST request.

  • CVE-2018-7631CriOct 9, 2018
    risk 0.64cvss 9.8epss 0.02

    Buffer Overflow in httpd in EpiCentro E_7.3.2+ allows attackers to execute code remotely via a specially crafted GET request without a leading "/" and without authentication.

  • CVE-2018-7632HigOct 9, 2018
    risk 0.49cvss 7.5epss 0.01

    Buffer Overflow in httpd in EpiCentro E_7.3.2+ allows attackers to cause a denial of service attack remotely via a specially crafted GET request with a leading "/" in the URL.