Vulnerabilities > Sparkdevnetwork > Rock RMS > 9.3

DATE CVE VULNERABILITY TITLE RISK
2021-01-07 CVE-2019-18643 Unrestricted Upload of File with Dangerous Type vulnerability in Sparkdevnetwork Rock RMS
Rock RMS versions before 8.10 and versions 9.0 through 9.3 fails to properly validate files uploaded in the application.
network
low complexity
sparkdevnetwork CWE-434
critical
9.8