Vulnerabilities > Adbglobal > Epicentro > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-10-09 CVE-2018-7631 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adbglobal Epicentro 7.3.2
Buffer Overflow in httpd in EpiCentro E_7.3.2+ allows attackers to execute code remotely via a specially crafted GET request without a leading "/" and without authentication.
network
low complexity
adbglobal CWE-119
critical
9.8
2018-10-09 CVE-2018-7633 Code Injection vulnerability in Adbglobal Epicentro 7.3.2
Code injection in the /ui/login form Language parameter in Epicentro E_7.3.2+ allows attackers to execute JavaScript code by making a user issue a manipulated POST request.
network
low complexity
adbglobal CWE-94
critical
9.8