Vulnerabilities (CVE)

Filtered by vendor Supermicro-cms Project Subscribe
Filtered by product Supermicro-cms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-25857 1 Supermicro-cms Project 1 Supermicro-cms 2024-02-28 N/A 7.2 HIGH
An issue was discovered in pcmt superMicro-CMS version 3.11, allows authenticated attackers to execute arbitrary code via the font_type parameter to setup.php.
CVE-2021-25856 1 Supermicro-cms Project 1 Supermicro-cms 2024-02-28 N/A 4.9 MEDIUM
An issue was discovered in pcmt superMicro-CMS version 3.11, allows attackers to delete files via crafted image file in images.php.