Vulnerabilities (CVE)

Filtered by vendor Akcms Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-12583 1 Akcms Project 1 Akcms 2023-12-10 5.8 MEDIUM 6.5 MEDIUM
An issue was discovered in AKCMS 6.1. CSRF can delete an article via an admincp deleteitem action to index.php.
CVE-2018-12582 1 Akcms Project 1 Akcms 2023-12-10 6.8 MEDIUM 8.8 HIGH
An issue was discovered in AKCMS 6.1. CSRF can add an admin account via a /index.php?file=account&action=manageaccounts&job=newaccount URI.