Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2025-25960 Cross Site Scripting vulnerability in phpcmsv9 v.9.6.3 allows a remote attacker to escalate privileges via the menu interface of the member center of… Phpcms No fix yet Fix from $1,6002025-02-20 MEDIUM 5.4 CVE-2025-25958 Cross Site Scripting vulnerabilities in phpcmsv9 v.9.6.3 allows a remote attacker to escalate privileges via a crafted script. Phpcms No fix yet Fix from $1,6002025-02-20 MEDIUM 6.1 CVE-2021-40910 There is a reflective cross-site scripting (XSS) vulnerability in the PHPCMS V9.6.3 management side. Phpcms No fix yet Fix from $1,6002022-06-15 CRITICAL 9.8 CVE-2020-22203 SQL Injection in phpCMS 2008 sp4 via the genre parameter to yp/job.php. Phpcms No fix yet Fix from $2,3002021-06-16 CRITICAL 9.8 CVE-2020-22199 SQL Injection vulnerability in phpCMS 2007 SP6 build 0805 via the digg_mod parameter to digg_add.php. Phpcms No fix yet Fix from $2,3002021-06-16 HIGH 8.8 CVE-2020-22201 phpCMS 2008 sp4 allowas remote malicious users to execute arbitrary php commands via the pagesize parameter to yp/product.php. Phpcms No fix yet Fix from $1,9502021-06-16 MEDIUM 5.3 CVE-2020-22200 Directory Traversal vulnerability in phpCMS 9.1.13 via the q parameter to public_get_suggest_keyword. Phpcms No fix yet Fix from $1,6002021-06-16 CRITICAL 9.8 CVE-2018-19127EPSS 21% A code injection vulnerability in /type.php in PHPCMS 2008 allows attackers to write arbitrary content to a website cache file with a controllable fi… Phpcms Mitigation only Fix from $2,3002018-11-09 HIGH 7.5 CVE-2018-14940 PHPCMS 9 allows remote attackers to cause a denial of service (resource consumption) via large font_size, height, and width parameters in an api.php?… Phpcms No fix yet Fix from $1,9502018-08-05 HIGH 7.5 CVE-2011-0644 SQL injection vulnerability in include/admin/model_field.class.php in PHPCMS 2008 V2 allows remote attackers to execute arbitrary SQL commands via th… Phpcms 2008 No fix yet Fix from $1,9502011-01-25 HIGH 7.5 CVE-2011-0645 SQL injection vulnerability in data.php in PHPCMS 2008 V2 allows remote attackers to execute arbitrary SQL commands via the where_time parameter in a… Phpcms 2008 No fix yet Fix from $1,9502011-01-25 HIGH 7.8 CVE-2008-0513 Directory traversal vulnerability in parser/include/class.cache_phpcms.php in phpCMS 1.2.2 allows remote attackers to read arbitrary files via a .. (… Phpcms No fix yet Fix from $1,9502008-01-31 HIGH 7.5 CVE-2006-3019EPSS 8% Multiple PHP remote file inclusion vulnerabilities in phpCMS 1.2.1pl2 allow remote attackers to execute arbitrary PHP code via a URL in the PHPCMS_IN… Phpcms Mitigation only Fix from $1,9502006-06-15 MEDIUM 5.0 CVE-2005-1840 Directory traversal vulnerability in class.layout_phpcms.php in phpCMS 1.2.x before 1.2.1pl2 allows remote attackers to read or include arbitrary fil… Phpcms Patch available Fix from $1,6002005-06-02 MEDIUM 6.8 CVE-2004-1202 Cross-site scripting (XSS) vulnerability in parser.php in phpCMS 1.2.1 and earlier, with non-stealth and debug modes enabled, allows remote attackers… Phpcms Patch available Fix from $1,6002005-01-10 MEDIUM 5.0 CVE-2004-1203 parser.php in phpCMS 1.2.1 and earlier, with non-stealth and debug modes enabled, allows remote attackers to gain sensitive information via an invali… Phpcms Mitigation only Fix from $1,6002005-01-10