← Back

Megabip

megabip

4 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Megabip
megabip

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Megabip
1Megabip
Nov 21, 2024
Jun 12, 2024
9.3 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
Arbitrary File Upload vulnerability in MegaBIP software allows attacker to upload any file to the server (including a PHP code file) without an authentication. This issue affects MegaBIP software versions through 5.10.
1Megabip
1Megabip
Nov 21, 2024
Jun 12, 2024
9.3 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
Remote Code Execution vulnerability in MegaBIP software allows to execute arbitrary code on the server without requiring authentication by saving crafted by the attacker PHP code to one of the website files. This issue a...Show more
Remote Code Execution vulnerability in MegaBIP software allows to execute arbitrary code on the server without requiring authentication by saving crafted by the attacker PHP code to one of the website files. This issue affects MegaBIP software versions through 5.11.2.Show less
1Megabip
1Megabip
Nov 21, 2024
Jun 12, 2024
9.3 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
SQL Injection vulnerability in MegaBIP software allows attacker to obtain site administrator privileges, including access to the administration panel and the ability to change the administrator password. This issue affec...Show more
SQL Injection vulnerability in MegaBIP software allows attacker to obtain site administrator privileges, including access to the administration panel and the ability to change the administrator password. This issue affects MegaBIP software versions through 5.09.Show less
2Megabip
Smod
2Megabip
Smodbip
Nov 21, 2024
Jan 29, 2024
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Improper Input Validation vulnerability in MegaBIP and already unsupported SmodBIP software allows for Stored XSS.This issue affects SmodBIP in all versions and MegaBIP in versions up to 4.36.2. MegaBIP 5.08 was tested...Show more
Improper Input Validation vulnerability in MegaBIP and already unsupported SmodBIP software allows for Stored XSS.This issue affects SmodBIP in all versions and MegaBIP in versions up to 4.36.2. MegaBIP 5.08 was tested and is not vulnerable. A precise range of vulnerable versions remains unknown.Show less