Vulnerabilities (CVE)

Filtered by vendor Theradsystem Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-0327 1 Theradsystem Project 1 Theradsystem 2024-05-17 4.0 MEDIUM 6.1 MEDIUM
A vulnerability was found in saemorris TheRadSystem. It has been classified as problematic. Affected is an unknown function of the file users.php. The manipulation of the argument q leads to cross site scripting. It is possible to launch the attack remotely. VDB-218454 is the identifier assigned to this vulnerability.
CVE-2015-10063 1 Theradsystem Project 1 Theradsystem 2024-05-17 7.5 HIGH 9.8 CRITICAL
A vulnerability was found in saemorris TheRadSystem and classified as critical. This issue affects the function redirect of the file _login.php. The manipulation of the argument user/pass leads to sql injection. The attack may be initiated remotely. The identifier of the patch is bfba26bd34af31648a11af35a0bb66f1948752a6. It is recommended to apply a patch to fix this issue. The identifier VDB-218453 was assigned to this vulnerability.