📦 Rock Rms

by Sparkdevnetwork

🔍 What is Rock Rms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2019-18642

CRITICAL CVSS 9.8 Jan 7, 2021

CVE-2019-18642 allows account takeover in Rock RMS by tampering with user ID parameters in profile updates. Any authenticated user can change any other user's email address, including administrators, ...

CVE-2019-18641

CRITICAL CVSS 9.8 Mar 20, 2020

CVE-2019-18641 is an access control vulnerability in Rock RMS that allows unauthorized access to vCard data through the People/GetVCard/REST controller. This affects all Rock RMS installations before ...