Vulnerabilities (CVE)

Filtered by vendor Cds Software Consortium Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-1627 1 Cds Software Consortium 1 Invenio 2024-02-28 3.5 LOW N/A
CDS Invenio 0.92.1 and earlier allows remote authenticated users to delete email notification alerts of arbitrary users via a modified internal UID.
CVE-2006-5384 1 Cds Software Consortium 1 Cds Agenda 2024-02-28 7.5 HIGH N/A
PHP remote file inclusion vulnerability in modification/SendAlertEmail.php in CDS Software Consortium CDS Agenda 4.2.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the AGE parameter.