Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ssh Companywebsite Project Subscribe
Filtered by product Ssh Companywebsite
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-14441 1 Ssh Companywebsite Project 1 Ssh Companywebsite 2018-09-14 7.5 HIGH 9.8 CRITICAL
An issue was discovered in cckevincyh SSH CompanyWebsite through 2018-05-03. admin/admin/fileUploadAction_fileUpload.action allows arbitrary file upload, as demonstrated by a .jsp file with the image/jpeg content type.
CVE-2018-14440 1 Ssh Companywebsite Project 1 Ssh Companywebsite 2018-09-14 7.5 HIGH 9.8 CRITICAL
An issue was discovered in cckevincyh SSH CompanyWebsite through 2018-05-03. SQL injection exists via the admin/noticeManageAction_queryNotice.action noticeInfo parameter.