Filtered by vendor Wisdomgarden Subscriptions
Filtered by product Tronclass Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-10719 1 Wisdomgarden 1 Tronclass 2025-09-22 4.3 Medium
Tronclass developed by WisdomGarden has an Insecure Direct object Reference vulnerability, allowing remote attackers with regular privilege to modify a specific parameter to access other users' files.
CVE-2024-6738 1 Wisdomgarden 1 Tronclass 2024-11-21 5.3 Medium
The tumbnail API of Tronclass from WisdomGarden lacks proper access control, allowing unauthenticated remote attackers to obtain certain specific files by modifying the URL.