Vulnerabilities (CVE)

Filtered by vendor Whmcs Subscribe
Filtered by product Whmcs
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-3536 1 Whmcs 2 Group Pay, Whmcs 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in the gp_LoadUserFromHash function in functions_hash.php in the Group Pay module 1.5 and earlier for WHMCS allows remote attackers to execute arbitrary SQL commands via the hash parameter.
CVE-2010-1702 1 Whmcs 1 Whmcs 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in submitticket.php in WHMCompleteSolution (WHMCS) 4.2 allows remote attackers to execute arbitrary SQL commands via the deptid parameter.