Vulnerabilities > Maianmedia

DATE CVE VULNERABILITY TITLE RISK
2022-06-16 CVE-2021-41420 Cross-site Scripting vulnerability in Maianmedia Maianaffiliate 1.0
A stored XSS vulnerability in MaianAffiliate v.1.0 allows an authenticated attacker for arbitrary JavaScript code execution in the context of authenticated and unauthenticated users through the MaianAffiliate admin panel.
network
low complexity
maianmedia CWE-79
5.4
2022-06-16 CVE-2021-41421 Unrestricted Upload of File with Dangerous Type vulnerability in Maianmedia Maianaffiliate 1.0
A PHP code injection vulnerability in MaianAffiliate v.1.0 allows an authenticated attacker to gain RCE through the MaianAffiliate admin panel.
network
low complexity
maianmedia CWE-434
4.8
2021-09-20 CVE-2021-39402 Code Injection vulnerability in Maianmedia Maianaffiliate 1.0
MaianAffiliate v.1.0 is suffers from code injection by adding a new product via the admin panel.
network
low complexity
maianmedia CWE-94
7.2