Filtered by vendor Solis Subscriptions
Filtered by product Gnuteca Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-12766 1 Solis 1 Gnuteca 2020-05-12 9.8 Critical
Gnuteca 3.8 allows action=main:search:simpleSearch SQL Injection via the exemplaryStatusId parameter.
CVE-2020-12764 1 Solis 1 Gnuteca 2020-05-12 5.3 Medium
Gnuteca 3.8 allows file.php?folder=/&file= Directory Traversal.