Lucene search

K

Srcms Security Vulnerabilities

cve
cve

CVE-2018-14068

An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add an admin account via admin.php?m=Admin&c=manager&a=add.

8.8CVSS

8.6AI Score

0.001EPSS

2018-07-15 05:29 PM
16
cve
cve

CVE-2018-14069

An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add a user account via admin.php?m=Admin&c=member&a=add.

8.8CVSS

8.6AI Score

0.001EPSS

2018-07-15 05:29 PM
22
cve
cve

CVE-2018-19318

SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=manager&a=update to change the username and password of the super administrator account.

8.8CVSS

8.7AI Score

0.001EPSS

2018-11-16 07:29 PM
22
cve
cve

CVE-2018-19319

SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=gifts&a=update to change goods prices with the super administrator's privileges.

6.5CVSS

6.5AI Score

0.001EPSS

2018-11-16 07:29 PM
22