Vulnerabilities > Egavilanmedia
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-12-21 | CVE-2020-35276 | SQL Injection vulnerability in Egavilanmedia ECM Address Book 1.0 EgavilanMedia ECM Address Book 1.0 is affected by SQL injection. | 9.8 |
2020-12-21 | CVE-2020-35273 | Cross-Site Request Forgery (CSRF) vulnerability in Egavilanmedia User Registration & Login System With Admin Panel 1.0 EgavilanMedia User Registration & Login System with Admin Panel 1.0 is affected by Cross Site Request Forgery (CSRF) to remotely gain privileges in the User Profile panel. | 8.0 |
2020-12-15 | CVE-2020-35396 | Cross-site Scripting vulnerability in Egavilanmedia Barcodes Generator 1.0 EGavilan Barcodes generator 1.0 is affected by: Cross Site Scripting (XSS) via the index.php. | 6.1 |
2020-12-15 | CVE-2020-35395 | Cross-site Scripting vulnerability in Egavilanmedia Expense Management System 1.0 XSS in the Add Expense Component of EGavilan Media Expense Management System 1.0 allows an attacker to permanently store malicious JavaScript code via the 'description' field | 6.1 |