Skip to content
Noroxi

earcms records

2 published records for vendor earcms.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17
  2. 23

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

2 records
  • An issue found in Earcms Ear App v.20181124 allows a remote attacker to execute arbitrary code via the uload/index-uplog.php.

    CriticalCVSS 9.8No exploitEPSS 1%

    earcms · earAug 29, 2023

  • In Earcms Ear Music through 4.1 build 20170710, remote authenticated users can execute arbitrary PHP code by changing the allowable music-up

    HighCVSS 7.0No exploitEPSS 1%

    earcms · ear musicJul 30, 2017