Vulnerabilities (CVE)

Filtered by vendor Iscripts Subscribe
Filtered by product Uberforx
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-10136 1 Iscripts 1 Uberforx 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
iScripts UberforX 2.2 has Stored XSS in the "manage_settings" section of the Admin Panel via a value field to the /cms?section=manage_settings&action=edit URI.
CVE-2018-10137 1 Iscripts 1 Uberforx 2023-12-10 6.8 MEDIUM 8.8 HIGH
iScripts UberforX 2.2 has CSRF in the "manage_settings" section of the Admin Panel via the /cms?section=manage_settings&action=edit URI.