Vulnerabilities (CVE)

Filtered by vendor Jetbox Subscribe
Filtered by product Jetbox One Cms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1447 1 Jetbox 1 Jetbox One Cms 2023-12-10 5.0 MEDIUM N/A
Jetbox One 2.0.8 and possibly other versions stores passwords in the database in plaintext, which could allow attackers to gain sensitive information.
CVE-2004-1448 1 Jetbox 1 Jetbox One Cms 2023-12-10 4.6 MEDIUM N/A
Jetbox One 2.0.8 and possibly other versions allow remote attackers with Author privileges in the IMAGES module to upload PHP files and execute arbitrary code.