CVE-2019-17605
Published Nov 7, 2019A mass assignment vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to take over another candidate's account (by also exploiting CVE-2019-17604) via a modif…
Vendor/product archive
2 CVEs tagged to eyecomms / eyecms — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
A mass assignment vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to take over another candidate's account (by also exploiting CVE-2019-17604) via a modif…
An Insecure Direct Object Reference (IDOR) vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to change other candidates' personal information (first name, l…