VYPR
Vendor

Srcms Project

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2018-19318HigNov 16, 2018
    risk 0.57cvss 8.8epss 0.00

    SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=manager&a=update to change the username and password of the super administrator account.

  • CVE-2018-14069HigJul 15, 2018
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add a user account via admin.php?m=Admin&c=member&a=add.

  • CVE-2018-14068HigJul 15, 2018
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add an admin account via admin.php?m=Admin&c=manager&a=add.

  • CVE-2018-19319MedNov 16, 2018
    risk 0.42cvss 6.5epss 0.00

    SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=gifts&a=update to change goods prices with the super administrator's privileges.