Vulnerabilities > Jspxcms > Jspxcms > 9.0.0

DATE CVE VULNERABILITY TITLE RISK
2019-06-20 CVE-2018-16553 Improper Access Control vulnerability in Jspxcms 9.0.0
In Jspxcms 9.0.0, a vulnerable URL routing implementation allows remote code execution after logging in as web admin.
network
low complexity
jspxcms CWE-284
6.5
2018-12-30 CVE-2018-20596 Server-Side Request Forgery (SSRF) vulnerability in Jspxcms 9.0.0
Jspxcms v9.0.0 allows SSRF.
network
low complexity
jspxcms CWE-918
7.5