Filtered by vendor Davidguva
Subscribe
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2024-46055 | 1 Davidguva | 1 Openvidreview | 2025-05-15 | N/A | 4.8 MEDIUM |
OpenVidReview 1.0 is vulnerable to Cross Site Scripting (XSS) in review names. | |||||
CVE-2024-46054 | 1 Davidguva | 1 Openvidreview | 2025-05-15 | N/A | 9.8 CRITICAL |
OpenVidReview 1.0 is vulnerable to Incorrect Access Control. The /upload route is accessible without authentication, allowing any user to upload files. |