Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.2
CVE-2025-15148
A flaw has been found in CmsEasy up to 7.7.7. Affected is the function savetemp_action in the library /lib/admin/template_admin.php of the component …
Cmseasy
after 7.7.7.0
MEDIUM 6.1
CVE-2025-11332
A vulnerability was determined in CmsEasy up to 7.7.7. This affects an unknown function in the library lib/inc/view.php of the component URL Handler.…
Cmseasy
after 7.7.7.0
MEDIUM 6.3
CVE-2025-55910
CMSEasy v7.7.8.0 and before is vulnerable to Arbitrary file deletion in database_admin.php.
Cmseasy
after 7.7.8.0
HIGH 8.1
CVE-2025-1336
A vulnerability has been found in CmsEasy 7.7.7.9 and classified as problematic. Affected by this vulnerability is the function deleteimg_action in t…
Cmseasy
No fix yet
HIGH 8.1
CVE-2025-1335
A vulnerability, which was classified as problematic, was found in CmsEasy 7.7.7.9. Affected is the function deleteimg_action in the library lib/admi…
Cmseasy
No fix yet
MEDIUM 6.5
CVE-2025-1106
A vulnerability classified as critical has been found in CmsEasy 7.7.7.9. This affects the function deletedir_action/restore_action in the library li…
Cmseasy
No fix yet
MEDIUM 6.5
CVE-2025-0973
A vulnerability classified as critical was found in CmsEasy 7.7.7.9. This vulnerability affects the function backAll_action in the library lib/admin/…
Cmseasy
No fix yet
HIGH 7.5
CVE-2024-34315
CmsEasy v7.7.7.9 was discovered to contain a local file inclusion vunerability via the file_get_contents function in the fckedit_action method of /ad…
Cmseasy
No fix yet
HIGH 7.5
CVE-2024-31551
Directory Traversal vulnerability in lib/admin/image.admin.php in cmseasy v7.7.7.9 20240105 allows attackers to delete arbitrary files via crafted GE…
Cmseasy
Mitigation only
MEDIUM 6.4
CVE-2024-32163
CMSeasy 7.7.7.9 is vulnerable to code execution.
Cmseasy
No fix yet
CRITICAL 9.8
CVE-2024-0523
A vulnerability was found in CmsEasy up to 7.7.7. It has been declared as critical. Affected by this vulnerability is the function getslide_child_act…
Cmseasy
after 7.7.7.0
HIGH 7.5
CVE-2020-18406
An issue was discovered in cmseasy v7.0.0 that allows user credentials to be sent in clear text due to no encryption of form data.
Cmseasy
No fix yet
CRITICAL 9.8
CVE-2023-34880
cmseasy v7.7.7.7 20230520 was discovered to contain a path traversal vulnerability via the add_action method at lib/admin/language_admin.php. This vu…
Cmseasy
No fix yet
HIGH 8.8
CVE-2021-42643
cmseasy V7.7.5_20211012 is affected by an arbitrary file write vulnerability. Through this vulnerability, a PHP script file is written to the website…
Cmseasy
No fix yet
MEDIUM 6.5
CVE-2021-42644
cmseasy V7.7.5_20211012 is affected by an arbitrary file read vulnerability. After login, the configuration file information of the website such as t…
Cmseasy
No fix yet
MEDIUM 6.1
CVE-2019-8432
In CmsEasy 7.0, there is XSS via the ckplayer.php url parameter.
Cmseasy
No fix yet
MEDIUM 6.1
CVE-2019-8434
In CmsEasy 7.0, there is XSS via the ckplayer.php autoplay parameter.
Cmseasy
No fix yet
HIGH 8.8
CVE-2018-11679
An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability that can add an article via /index.php?case=table&act=add&table=archiv…
Cmseasy
No fix yet
MEDIUM 6.5
CVE-2018-11680
An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability in the rich text editor that can add an IFRAME element. This might be …
Cmseasy
No fix yet