cagexunxi/CVE

cagexunxi/CVE

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
8.8 HIGH

Insecure Permissions vulnerability in kvf-admin v1.0.0 allows a remote attacker to escalate privileges via the UserController.java component

5.3 MEDIUM

SQL Injection vulnerability in uzy-ssm-mall v1.1.0 allows a remote attacker to obtain sensitive information via the ProductMapper.xml and /OrderUtil.java components