Vulnerability index

Browse CVEs

15 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 8.1 CVE-2025-1336 A vulnerability has been found in CmsEasy 7.7.7.9 and classified as problematic. Affected by this vulnerability is the function deleteimg_action in t… Cmseasy No fix yet Fix from $1,9502025-02-16 HIGH 8.1 CVE-2025-1335 A vulnerability, which was classified as problematic, was found in CmsEasy 7.7.7.9. Affected is the function deleteimg_action in the library lib/admi… Cmseasy No fix yet Fix from $1,9502025-02-16 MEDIUM 6.5 CVE-2025-1106 A vulnerability classified as critical has been found in CmsEasy 7.7.7.9. This affects the function deletedir_action/restore_action in the library li… Cmseasy No fix yet Fix from $1,6002025-02-07 MEDIUM 6.5 CVE-2025-0973 A vulnerability classified as critical was found in CmsEasy 7.7.7.9. This vulnerability affects the function backAll_action in the library lib/admin/… Cmseasy No fix yet Fix from $1,6002025-02-03 HIGH 7.5 CVE-2024-34315 CmsEasy v7.7.7.9 was discovered to contain a local file inclusion vunerability via the file_get_contents function in the fckedit_action method of /ad… Cmseasy No fix yet Fix from $1,9502024-05-07 HIGH 7.5 CVE-2024-31551 Directory Traversal vulnerability in lib/admin/image.admin.php in cmseasy v7.7.7.9 20240105 allows attackers to delete arbitrary files via crafted GE… Cmseasy Mitigation only Fix from $1,9502024-04-26 MEDIUM 6.4 CVE-2024-32163 CMSeasy 7.7.7.9 is vulnerable to code execution. Cmseasy No fix yet Fix from $1,6002024-04-17 HIGH 7.5 CVE-2020-18406 An issue was discovered in cmseasy v7.0.0 that allows user credentials to be sent in clear text due to no encryption of form data. Cmseasy No fix yet Fix from $1,9502023-06-27 CRITICAL 9.8 CVE-2023-34880 cmseasy v7.7.7.7 20230520 was discovered to contain a path traversal vulnerability via the add_action method at lib/admin/language_admin.php. This vu… Cmseasy No fix yet Fix from $2,3002023-06-15 HIGH 8.8 CVE-2021-42643 cmseasy V7.7.5_20211012 is affected by an arbitrary file write vulnerability. Through this vulnerability, a PHP script file is written to the website… Cmseasy No fix yet Fix from $1,9502022-05-17 MEDIUM 6.5 CVE-2021-42644 cmseasy V7.7.5_20211012 is affected by an arbitrary file read vulnerability. After login, the configuration file information of the website such as t… Cmseasy No fix yet Fix from $1,6002022-05-17 MEDIUM 6.1 CVE-2019-8432 In CmsEasy 7.0, there is XSS via the ckplayer.php url parameter. Cmseasy No fix yet Fix from $1,6002019-02-18 MEDIUM 6.1 CVE-2019-8434 In CmsEasy 7.0, there is XSS via the ckplayer.php autoplay parameter. Cmseasy No fix yet Fix from $1,6002019-02-18 HIGH 8.8 CVE-2018-11679 An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability that can add an article via /index.php?case=table&act=add&table=archiv… Cmseasy No fix yet Fix from $1,9502018-06-02 MEDIUM 6.5 CVE-2018-11680 An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability in the rich text editor that can add an IFRAME element. This might be … Cmseasy No fix yet Fix from $1,6002018-06-02