Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2018-14960

Disclosure Date: August 06, 2018 (last updated November 27, 2024)
Xiao5uCompany 1.7 has CSRF via admin/Admin.asp.
0
Attacker Value
Unknown

CVE-2018-14527

Disclosure Date: July 23, 2018 (last updated November 27, 2024)
Feedback.asp in Xiao5uCompany 1.7 has XSS because the XSS protection mechanism in Safe.asp is insufficient (for example, it considers SCRIPT and IMG elements, but does not consider VIDEO elements).
0