Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yurabakhtin

#16873of 53,635
15.9Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2019-7851
9.8
2019-05-23
B2Evolution · B2Evolution · CVE-2016-8901
**Name of the Vulnerable Software and Affected Versions** b2evolution version 6.7.6 **Description** The issue is related to an Object Injection in the /htsrv/call plugin.php endpoint. **Recommendations** For version 6.7.6, update to a newer version that contains a fix for this issue.
PT-2017-9095
6.1
2017-01-18
B2Evolution · B2Evolution · CVE-2016-7149
**Name of the Vulnerable Software and Affected Versions** b2evolution versions 6.7.5 and earlier **Description** A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML via vectors related to the autolink function. **Recommendations** For versions 6.7.5 and earlier, update to a version later than 6.7.5 to resolve the issue.