Vulnerabilities (CVE)

Filtered by vendor Megabip Subscribe
Filtered by product Megabip
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-1659 1 Megabip 1 Megabip 2024-08-14 N/A 9.8 CRITICAL
Arbitrary File Upload vulnerability in MegaBIP software allows attacker to upload any file to the server (including a PHP code file) without an authentication. This issue affects MegaBIP software versions through 5.10.
CVE-2024-1577 1 Megabip 1 Megabip 2024-08-14 N/A 9.8 CRITICAL
Remote Code Execution vulnerability in MegaBIP software allows to execute arbitrary code on the server without requiring authentication by saving crafted by the attacker PHP code to one of the website files. This issue affects MegaBIP software versions through 5.11.2.
CVE-2024-1576 1 Megabip 1 Megabip 2024-08-14 N/A 9.8 CRITICAL
SQL Injection vulnerability in MegaBIP software allows attacker to obtain site administrator privileges, including access to the administration panel and the ability to change the administrator password. This issue affects MegaBIP software versions through 5.09.