Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2021-47735
CMSimple 5.4 contains an authenticated remote code execution vulnerability that allows logged-in attackers to inject malicious PHP code into template…
Cmsimple
No fix yet
HIGH 7.8
CVE-2021-47734
CMSimple 5.4 contains an authenticated local file inclusion vulnerability that allows remote attackers to manipulate PHP session files and execute ar…
Cmsimple
No fix yet
MEDIUM 6.1
CVE-2021-47732
CMSimple 5.2 contains a stored cross-site scripting vulnerability in the Filebrowser External input field that allows attackers to inject malicious J…
Cmsimple
No fix yet
MEDIUM 6.1
CVE-2021-47733
CMSimple 5.4 contains a cross-site scripting vulnerability that allows attackers to bypass input filtering by using HTML to Unicode encoding. Attacke…
Cmsimple
No fix yet
HIGH 8.8
CVE-2024-58280
CMSimple 5.15 contains a remote command execution vulnerability that allows authenticated attackers to modify file extensions and upload malicious PH…
Cmsimple
No fix yet
CRITICAL 9.1
CVE-2024-57548
CMSimple 5.16 allows the user to edit log.php file via print page.
Cmsimple
No fix yet
HIGH 7.5
CVE-2024-57547
Insecure Permissions vulnerability in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a crafted script to the Functional…
Cmsimple
No fix yet
HIGH 7.5
CVE-2024-57549
CMSimple 5.16 allows the user to read cms source code through manipulation of the file name in the file parameter of a GET request.
Cmsimple
No fix yet
HIGH 7.5
CVE-2024-57546
An issue in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a crafted script to the validate link function.
Cmsimple
No fix yet
HIGH 7.4
CVE-2024-33423
Cross-Site Scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary web scripts or HTML via a craft…
Cmsimple
No fix yet
MEDIUM 6.1
CVE-2024-33424
A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary web scripts or HTML via a cra…
Cmsimple
No fix yet
HIGH 7.2
CVE-2024-32345
A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary web scripts or HTML via a cra…
Cmsimple
No fix yet
MEDIUM 6.8
CVE-2024-32344
A cross-site scripting (XSS) vulnerability in the Settings menu of CMSimple v5.15 allows attackers to execute arbitrary web scripts or HTML via a cra…
Cmsimple
No fix yet
CRITICAL 9.8
CVE-2021-43741
CMSimple 5.4 is vulnerable to Directory Traversal. The vulnerability exists when a user changes the file name to malicious file on config.php leading…
Cmsimple
No fix yet
MEDIUM 5.4
CVE-2021-43742
CMSimple 5.4 is vulnerable to Cross Site Scripting (XSS) via the file upload feature.
Cmsimple
No fix yet
MEDIUM 6.8
CVE-2008-2650EPSS 19%
Directory traversal vulnerability in cmsimple/cms.php in CMSimple 3.1, when register_globals is enabled, allows remote attackers to include and execu…
Cmsimple
No fix yet