Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2018-8979 1 Open-audit 1 Open-audit 2024-11-21 N/A
Open-AudIT Professional 2.1 has CSRF, as demonstrated by modifying a user account or inserting XSS sequences via the credentials URI.
CVE-2018-8978 1 Open-audit 1 Open-audit 2024-11-21 N/A
Open-AudIT Professional 2.1 has XSS via a crafted src attribute of an IMG element within a URI.