CVE-2024-9981
Published Oct 15, 2024The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote attackers with regular privileges to upload a malicious PHP file first and then…
Vendor archive
2 CVEs tagged to vendor formosasoft — 0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.
The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote attackers with regular privileges to upload a malicious PHP file first and then…
The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote attackers with regular privileges to inject arbitrary SQL commands to read, mod…