Vulnerabilities > Ofcms Project > High

DATE CVE VULNERABILITY TITLE RISK
2023-03-16 CVE-2023-24760 Improper Privilege Management vulnerability in Ofcms Project Ofcms 1.1.4
An issue found in Ofcms v.1.1.4 allows a remote attacker to to escalate privileges via the respwd method in SysUserController.
network
low complexity
ofcms-project CWE-269
8.8
2019-03-06 CVE-2019-9617 Unrestricted Upload of File with Dangerous Type vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-434
8.8
2019-03-06 CVE-2019-9616 Use of Incorrectly-Resolved Name or Reference vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-706
7.2
2019-03-06 CVE-2019-9615 SQL Injection vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-89
7.2
2019-03-06 CVE-2019-9614 Injection vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-74
8.8
2019-03-06 CVE-2019-9613 Unrestricted Upload of File with Dangerous Type vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-434
7.2
2019-03-06 CVE-2019-9612 Unrestricted Upload of File with Dangerous Type vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-434
8.8
2019-03-06 CVE-2019-9609 Unrestricted Upload of File with Dangerous Type vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-434
8.8
2019-03-06 CVE-2019-9608 Unrestricted Upload of File with Dangerous Type vulnerability in Ofcms Project Ofcms 1.1.1/1.1.2
An issue was discovered in OFCMS before 1.1.3.
network
low complexity
ofcms-project CWE-434
8.8