Vulnerabilities > Gambio > High

DATE CVE VULNERABILITY TITLE RISK
2024-02-12 CVE-2024-23762 Unrestricted Upload of File with Dangerous Type vulnerability in Gambio 4.9.2.0
Unrestricted File Upload vulnerability in Content Manager feature in Gambio 4.9.2.0 allows attackers to execute arbitrary code via upload of crafted PHP file.
local
low complexity
gambio CWE-434
7.8
2020-07-28 CVE-2020-10984 Cross-Site Request Forgery (CSRF) vulnerability in Gambio GX 4.0.0.0
Gambio GX before 4.0.1.0 allows admin/admin.php CSRF.
network
low complexity
gambio CWE-352
8.8