Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-2024-44871EPSS 16%
An arbitrary file upload vulnerability in the component /admin/index.php of moziloCMS v3.0 allows attackers to execute arbitrary code via uploading a…
Mozilocms
No fix yet
MEDIUM 6.1
CVE-2024-44872
A reflected cross-site scripting (XSS) vulnerability in moziloCMS v3.0 allows attackers to execute arbitrary code in the context of a user's browser …
Mozilocms
No fix yet
MEDIUM 6.5
CVE-2024-29368
An arbitrary file upload vulnerability in the file handling module of moziloCMS v2.0 allows attackers to bypass extension restrictions via file renam…
Mozilocms
No fix yet
MEDIUM 6.1
CVE-2024-2245
Cross-Site Scripting vulnerability in moziloCMS version 2.0. By sending a POST request to the '/install.php' endpoint, a JavaScript payload could be …
Mozilocms
Mitigation only
CRITICAL 9.1
CVE-2022-23357EPSS 20%
mozilo2.0 was discovered to be vulnerable to directory traversal attacks via the parameter curent_dir.
Mozilocms
No fix yet
MEDIUM 5.4
CVE-2020-25394
A stored cross site scripting (XSS) vulnerability in moziloCMS 2.0 allows authenticated attackers to execute arbitrary web scripts or HTML via a craf…
Mozilocms
No fix yet
HIGH 7.5
CVE-2009-1368EPSS 6%
Directory traversal vulnerability in index.php in moziloCMS 1.11 allows remote attackers to read arbitrary files via a .. (dot dot) in the page param…
Mozilocms
Patch available
MEDIUM 5.0
CVE-2009-1369
moziloCMS 1.11 allows remote attackers to obtain sensitive information via the (1) gal[] parameter to gallery.php, (2) page[] and (3) cat[] parameter…
Mozilocms
No fix yet
MEDIUM 6.8
CVE-2008-6128
Session fixation vulnerability in moziloCMS 1.10.2 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.
Mozilocms
after 1.10.2
MEDIUM 6.0
CVE-2008-6131
Session fixation vulnerability in moziloWiki 1.0.1 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.
Mozilowiki
after 1.0.1
MEDIUM 5.0
CVE-2008-6126
Multiple directory traversal vulnerabilities in moziloCMS 1.10.2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the…
Mozilocms
after 1.10.2