Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Fi Liu

Researcher fromCHT Security
#15303of 53,633
17.6Total CVSS
Vulnerabilities · 2
High
2
PT-2024-39978
8.8
2024-10-15
Formosasoft · Ee-Class · CVE-2024-9980
**Name of the Vulnerable Software and Affected Versions** FormosaSoft ee-class (affected versions not specified) **Description** The issue concerns a failure to properly validate a specific page parameter in the ee-class from FormosaSoft, allowing remote attackers with regular privileges to inject arbitrary SQL commands. This can lead to the reading, modification, and deletion of database contents. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2024-39979
8.8
2024-10-15
Formosasoft · Ee-Class · CVE-2024-9981
**Name of the Vulnerable Software and Affected Versions** FormosaSoft ee-class (affected versions not specified) **Description** The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote attackers with regular privileges to upload a malicious PHP file first and then exploit this vulnerability to include the file, resulting in arbitrary code execution on the server. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.