Vulnerabilities > Mobatime > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-06-05 | CVE-2023-3066 | Authorization Bypass Through User-Controlled Key vulnerability in Mobatime Amxgt 100 1.3.20 Incorrect Authorization vulnerability in Mobatime mobile application AMXGT100 allows a low-privileged user to impersonate anyone else, including administratorsThis issue affects Mobatime mobile application AMXGT100: through 1.3.20. | 8.1 |
2023-06-02 | CVE-2023-3032 | Unrestricted Upload of File with Dangerous Type vulnerability in Mobatime web Application 06.7.22 Unrestricted Upload of File with Dangerous Type vulnerability in Mobatime web application (Documentary proof upload modules) allows a malicious user to Upload a Web Shell to a Web Server.This issue affects Mobatime web application: through 06.7.22. | 8.8 |
2023-06-02 | CVE-2023-3033 | Incorrect Authorization vulnerability in Mobatime web Application 06.7.22 Incorrect Authorization vulnerability in Mobatime web application allows Privilege Escalation, Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Mobatime web application: through 06.7.22. | 8.8 |