VendorsEMLsoft Projectemlsoftall versions
Vulnerabilities

EMLsoft Project EMLsoft

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2018-14968
An issue was discovered in EMLsoft 5.4.5. upload\eml\action\action.address.php has SQL Injection via the numPerPage parameter.
Published 2018-08-06 · Modified
9.8EPSS 0.011
CVE-2018-14967
An issue was discovered in EMLsoft 5.4.5. upload\eml\action\action.user.php has SQL Injection via the numPerPage parameter.
Published 2018-08-06 · Modified
8.8EPSS 0.010
CVE-2018-14965
An issue was discovered in EMLsoft 5.4.5. The eml/upload/eml/?action=address&do=add page allows CSRF.
Published 2018-08-06 · Modified
8.8EPSS 0.005
CVE-2018-14966
An issue was discovered in EMLsoft 5.4.5. The eml/upload/eml/?action=user&do=add page allows CSRF.
Published 2018-08-06 · Modified
8.8EPSS 0.005
CVE-2018-14964
An issue was discovered in EMLsoft 5.4.5. XSS exists via the eml/upload/eml/?action=address&do=edit page.
Published 2018-08-06 · Modified
5.4EPSS 0.005