VYPR
Vendor

Oecms

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2019-1010112HigJul 18, 2019
    risk 0.57cvss 8.8epss 0.01

    OECMS v4.3.R60321 and v4.3 later is affected by: Cross Site Request Forgery (CSRF). The impact is: The victim clicks on adding an administrator account. The component is: admincp.php. The attack vector is: network connectivity. The fixed version is: v4.3.

  • CVE-2018-12095MedJun 11, 2018
    risk 0.39cvss 5.4epss 0.06

    A Reflected Cross-Site Scripting web vulnerability has been discovered in the OEcms v3.1 web-application. The vulnerability is located in the mod parameter of info.php.