Vulnerabilities > C P SUB Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-02-11 | CVE-2019-7738 | Cross-Site Request Forgery (CSRF) vulnerability in C.P.Sub Project C.P.Sub 5.1/5.2 C.P.Sub before 5.3 allows CSRF via a manage.php?p=article_del&id= URI. | 6.5 |
2017-08-29 | CVE-2017-12856 | Cross-site Scripting vulnerability in C.P.Sub Project C.P.Sub 5.2 Cross-site scripting (XSS) vulnerability in C.P.Sub 5.2 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter to index.php. | 6.1 |