Known Vulnerabilities for Rpcms by Rpcms

Listed below are 3 of the newest known vulnerabilities associated with the software "Rpcms" by "Rpcms".

These CVEs are retrieved based on exact matches on listed software and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-37394 In RPCMS v1.8 and below, attackers can interact with API and change variable "role" to "admin" to achieve admin user registra... 8.8 - HIGH 2021-07-26 2021-08-06
CVE-2021-37393 In RPCMS v1.8 and below, the "nickname" variable is not properly sanitized before being displayed on page. Attacker can use "... 5.4 - MEDIUM 2021-07-26 2021-08-06
CVE-2021-37392 In RPCMS v1.8 and below, the "nickname" variable is not properly sanitized before being displayed on page. When the API funct... 5.4 - MEDIUM 2021-07-26 2021-08-06

