Vulnerabilities > Adbglobal > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-10-09 | CVE-2018-7633 | Code Injection vulnerability in Adbglobal Epicentro 7.3.2 Code injection in the /ui/login form Language parameter in Epicentro E_7.3.2+ allows attackers to execute JavaScript code by making a user issue a manipulated POST request. | 9.8 |
2018-10-09 | CVE-2018-7631 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adbglobal Epicentro 7.3.2 Buffer Overflow in httpd in EpiCentro E_7.3.2+ allows attackers to execute code remotely via a specially crafted GET request without a leading "/" and without authentication. | 9.8 |