Skip to content
Noroxi

sendy records

2 published records for vendor sendy.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    2 records
    • SQL injection vulnerability in /send-to in Sendy 1.1.9.1 allows remote attackers to execute arbitrary SQL commands via the c parameter.

      HighCVSS 7.5Proof of conceptEPSS 1%

      sendy · sendyJan 13, 2015

    • SQL injection vulnerability in /app in Sendy 1.1.8.4 allows remote attackers to execute arbitrary SQL commands via the i parameter.

      HighCVSS 7.5Proof of conceptEPSS 1%

      sendy · sendyJan 13, 2015