Filtered by vendor Exceedone Subscriptions
Filtered by product Laravel-admin Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-38089 1 Exceedone 2 Exment, Laravel-admin 2024-11-21 5.4 Medium
Stored cross-site scripting vulnerability in Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earlier, (PHP7) exceedone/exment v4.4.2 and earlier and exceedone/laravel-admin v2.2.2 and earlier) allows a remote authenticated attacker to inject an arbitrary script.
CVE-2022-38080 1 Exceedone 2 Exment, Laravel-admin 2024-11-21 5.4 Medium
Reflected cross-site scripting vulnerability in Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earlier, (PHP7) exceedone/exment v4.4.2 and earlier and exceedone/laravel-admin v2.2.2 and earlier) allows a remote authenticated attacker to inject an arbitrary script.
CVE-2022-37333 1 Exceedone 2 Exment, Laravel-admin 2024-11-21 8.8 High
SQL injection vulnerability in the Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0 and earlier, (PHP7) exceedone/exment v4.4.2 and earlier and exceedone/laravel-admin v2.2.2 and earlier) allows remote authenticated attackers to execute arbitrary SQL commands.