Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2018-19905
HTML injection exists in razorCMS 3.4.8 via the /#/page keywords parameter.
Razorcms
No fix yet
MEDIUM 5.4
CVE-2018-19906
Stored XSS exists in razorCMS 3.4.8 via the /#/page description parameter.
Razorcms
No fix yet
HIGH 8.8
CVE-2018-17986
rars/user/data in razorCMS 3.4.8 allows CSRF for changing the password of an admin user.
Razorcms
No fix yet
MEDIUM 5.4
CVE-2018-16727
razorCMS 3.4.7 allows Stored XSS via the keywords of the homepage within the settings component.
Razorcms
No fix yet
MEDIUM 5.4
CVE-2018-16726
razorCMS 3.4.7 allows HTML injection via the description of the homepage within the settings component.
Razorcms
No fix yet