2 results (0.001 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 1

09 Sep 2024 — Qualitor up to 8.24 is vulnerable to Remote Code Execution (RCE) via Arbitrary File Upload in checkAcesso.php. • https://github.com/extencil/CVE-2024-44849 • CWE-434: Unrestricted Upload of File with Dangerous Type •

CVSS: 10.0EPSS: 12%CPEs: 1EXPL: 4

06 Nov 2023 — Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the html/ad/adpesquisasql/request/processVariavel.php gridValoresPopHidden parameter. Qualitor hasta 8.20 permite a atacantes remotos ejecutar código arbitrario mediante código PHP en el parámetro html/ad/adpesquisasql/request/processVariavel.php gridValoresPopHidden. • https://github.com/vnxdtzip/CVE-2023-47253 • CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') •