Vulnerabilities > Adbglobal > Epicentro

DATE CVE VULNERABILITY TITLE RISK
2018-10-09 CVE-2018-7633 Code Injection vulnerability in Adbglobal Epicentro 7.3.2
Code injection in the /ui/login form Language parameter in Epicentro E_7.3.2+ allows attackers to execute JavaScript code by making a user issue a manipulated POST request.
network
low complexity
adbglobal CWE-94
7.5
2018-10-09 CVE-2018-7632 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adbglobal Epicentro 7.3.2
Buffer Overflow in httpd in EpiCentro E_7.3.2+ allows attackers to cause a denial of service attack remotely via a specially crafted GET request with a leading "/" in the URL.
network
low complexity
adbglobal CWE-119
5.0
2018-10-09 CVE-2018-7631 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adbglobal Epicentro 7.3.2
Buffer Overflow in httpd in EpiCentro E_7.3.2+ allows attackers to execute code remotely via a specially crafted GET request without a leading "/" and without authentication.
network
low complexity
adbglobal CWE-119
7.5