ComplianceControl

2 exploits Active since Dec 2024
CVE-2024-56115 NOMISEC MEDIUM WRITEUP
Amiro.cms < 7.8.4 - XSS
A vulnerability in Amiro.CMS before 7.8.4 exists due to the failure to take measures to neutralize special elements. It allows remote attackers to conduct a Cross-Site Scripting (XSS) attack.
CVSS 6.1
CVE-2024-56116 NOMISEC HIGH WRITEUP
Amiro.cms < 7.8.4 - CSRF
A Cross-Site Request Forgery vulnerability in Amiro.CMS before 7.8.4 allows remote attackers to create an administrator account.
CVSS 8.8