Arcms
Arcms Project · 2 CVEs
CVE-2018-19558
CRITICAL
An issue was discovered in arcms through 2018-03-19. SQL injection exists via the json/newslist limit parameter because…
Nov 26, 2018
CVE-2018-19557
CRITICAL
An issue was discovered in arcms through 2018-03-19. No authentication is required for index/main, user/useradd, or img…
Nov 26, 2018
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2018-19558 | An issue was discovered in arcms through 2018-03-19. SQL injection exists via the json/newslist limit parameter because of ctl/main/Json.php, ctl/main/service/… | CRITICAL | 1.14% | Nov 26, 2018 |
| CVE-2018-19557 | An issue was discovered in arcms through 2018-03-19. No authentication is required for index/main, user/useradd, or img/images. | CRITICAL | 1.46% | Nov 26, 2018 |
Showing 1 to 2 of 2 CVEs