Known Vulnerabilities for Srcms by Srcms Project
Listed below are 4 of the newest known vulnerabilities associated with "Srcms" by "Srcms Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-19319 json | SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=gifts&a=update to change goods prices with the super administrator's privileg... | 6.5 - MEDIUM | 2018-11-16 | 2018-12-17 |
| CVE-2018-19318 json | SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=manager&a=update to change the username and password of the super administrat... | 8.8 - HIGH | 2018-11-16 | 2018-12-17 |
| CVE-2018-14069 json | An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add a user account via admin.php?m=Admin&c=me... | 8.8 - HIGH | 2018-07-15 | 2018-09-10 |
| CVE-2018-14068 json | An issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add an admin account via admin.php?m=Admin&c=... | 8.8 - HIGH | 2018-07-15 | 2018-09-10 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Srcms Project | Srcms | 3.0.0 | |||
| Application | Srcms Project | Srcms | 2.3.1 | |||
| Application | Srcms Project | Srcms | 2.3 | |||
| Application | Srcms Project | Srcms | 2.2 | |||
| Application | Srcms Project | Srcms | 2.0.1 |