Vulnerabilities > Maianmedia > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-16 | CVE-2021-41420 | Cross-site Scripting vulnerability in Maianmedia Maianaffiliate 1.0 A stored XSS vulnerability in MaianAffiliate v.1.0 allows an authenticated attacker for arbitrary JavaScript code execution in the context of authenticated and unauthenticated users through the MaianAffiliate admin panel. | 5.4 |
2022-06-16 | CVE-2021-41421 | Unrestricted Upload of File with Dangerous Type vulnerability in Maianmedia Maianaffiliate 1.0 A PHP code injection vulnerability in MaianAffiliate v.1.0 allows an authenticated attacker to gain RCE through the MaianAffiliate admin panel. | 4.8 |