Vulnerabilities (CVE)

Filtered by vendor Rhymix Subscribe
Filtered by product Rhymix
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-19601 1 Rhymix 1 Rhymix 2023-12-10 6.5 MEDIUM 9.1 CRITICAL
Rhymix CMS 1.9.8.1 allows SSRF via an index.php?module=admin&act=dispModuleAdminFileBox SVG upload.
CVE-2018-19600 1 Rhymix 1 Rhymix 2023-12-10 3.5 LOW 4.8 MEDIUM
Rhymix CMS 1.9.8.1 allows XSS via an index.php?module=admin&act=dispModuleAdminFileBox SVG upload.