Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-17936 |
|
Vanguard Marketplace Digital Products PHP has CSRF via /search.
Vanguard Marketplace Digital Products PHP has CSRF via /search.
|
| CVE-2017-17937 |
|
Vanguard Marketplace Digital Products PHP has XSS via the phps_query parameter to /search.
Vanguard Marketplace Digital Products PHP has XSS via the phps_query parameter to /search.
|
| CVE-2017-17873 |
|
Vanguard Marketplace Digital Products PHP 1.4 has SQL Injection via the PATH_INFO to the /p URI.
Vanguard Marketplace Digital Products PHP 1.4 has SQL Injection via the PATH_INFO to the /p URI.
|
| CVE-2017-17874 |
|
Unrestricted File Upload in vanguard-project (CVE-2017-17874)
vulnerability in vanguard-project (CVE-2017-17874). Successful exploitation can lead to full system takeover.
|