Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2022-50895 Aero CMS 0.0.1 contains a SQL injection vulnerability in the author parameter that allows attackers to manipulate database queries. Attackers can exp… Aerocms Mitigation only Fix from $2,3002026-01-13 MEDIUM 5.4 CVE-2023-29847 AeroCMS v0.0.1 was discovered to contain multiple stored cross-site scripting (XSS) vulnerabilities via the comment_author and comment_content parame… Aerocms No fix yet Fix from $1,6002023-04-14 HIGH 7.5 CVE-2022-46137 AeroCMS v0.0.1 is vulnerable to Directory Traversal. The impact is: obtain sensitive information (remote). The component is: AeroCMS v0.0.1. Aerocms No fix yet Fix from $1,9502022-12-16 HIGH 7.2 CVE-2022-46135 In AeroCms v0.0.1, there is an arbitrary file upload vulnerability at /admin/posts.php?source=edit_post , through which we can upload webshell and co… Aerocms No fix yet Fix from $1,9502022-12-16 HIGH 7.2 CVE-2022-46051 The approve parameter from the AeroCMS-v0.0.1 CMS system is vulnerable to SQL injection attacks. Aerocms No fix yet Fix from $1,9502022-12-13 MEDIUM 6.5 CVE-2022-46059 AeroCMS v0.0.1 is vulnerable to Cross Site Request Forgery (CSRF). Aerocms No fix yet Fix from $1,6002022-12-13 MEDIUM 6.1 CVE-2022-46061 AeroCMS v0.0.1 is vulnerable to ClickJacking. Aerocms No fix yet Fix from $1,6002022-12-13 HIGH 7.5 CVE-2022-45329 AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the Search parameter. This vulnerability allows attackers to access databa… Aerocms No fix yet Fix from $1,9502022-11-29 HIGH 7.5 CVE-2022-45330 AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the Category parameter at \category.php. This vulnerability allows attacke… Aerocms No fix yet Fix from $1,9502022-11-22 HIGH 7.5 CVE-2022-45331 AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the p_id parameter at \post.php. This vulnerability allows attackers to ac… Aerocms No fix yet Fix from $1,9502022-11-22 HIGH 8.8 CVE-2022-38305 AeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the component /admin/profile.php. This vulnerability allows attac… Aerocms No fix yet Fix from $1,9502022-09-13 MEDIUM 6.5 CVE-2022-38812 AeroCMS 0.1.1 is vulnerable to SQL Injection via the author parameter. Aerocms No fix yet Fix from $1,6002022-08-31 HIGH 7.2 CVE-2022-27061 AeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the Post Image function under the Admin panel. This vulnerability… Aerocms No fix yet Fix from $1,9502022-04-08 MEDIUM 6.1 CVE-2022-27063 AeroCMS v0.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via view_all_comments.php. This vulnerability allows attac… Aerocms No fix yet Fix from $1,6002022-04-08