Vulnerabilities (CVE)

Filtered by vendor Rental Module Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-2712 1 Rental Module Project 1 Rental Module 2023-12-10 N/A 9.8 CRITICAL
Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Command Injection, Using Malicious Files, Upload a Web Shell to a Web Server.This issue affects Rental Module: before 23.05.15.
CVE-2023-2713 1 Rental Module Project 1 Rental Module 2023-12-10 N/A 9.8 CRITICAL
Authorization Bypass Through User-Controlled Key vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Authentication Abuse, Authentication Bypass.This issue affects Rental Module: before 23.05.15.