CVE-2024-9981
Published Oct 15, 2024The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote attackers with regular privileges to upload a malicious PHP file first and then…
Vendor/product archive
2 CVEs tagged to formosasoft / ee-class — 0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.
The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote attackers with regular privileges to upload a malicious PHP file first and then…
The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote attackers with regular privileges to inject arbitrary SQL commands to read, mod…