Vulnerability index

Browse CVEs

47 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Semcms CRITICAL 9.8
CVE-2026-1552

A security vulnerability has been detected in SEMCMS 5.0. This vulnerability affects unknown code of the file /SEMCMS_Info.php. The manipulation of t…

Mitigation only
Fix from $2,300 2026-01-29
Semcms MEDIUM 5.4
CVE-2025-51655

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Quanxian.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51656

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_Link.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51657

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Link.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51658

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_InquiryView.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51659

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_Products.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51660

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Products.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51652

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Categories.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51653

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_ct.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms MEDIUM 5.4
CVE-2025-51654

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Infocategories.php.

Fix: after 5.0
Fix from $1,600 2025-07-14
Semcms CRITICAL 9.8
CVE-2025-25686

semcms <=5.0 is vulnerable to SQL Injection in SEMCMS_Fuction.php.

Fix: after 5.0
Fix from $2,300 2025-03-27
Semcms CRITICAL 9.8
CVE-2024-46103

SEMCMS 4.8 is vulnerable to SQL Injection via SEMCMS_Main.php.

No fix yet
Fix from $2,300 2024-09-20
Semcms HIGH 7.5
CVE-2024-36800

A SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the ID parameter in Download.php.

No fix yet
Fix from $1,950 2024-06-04
Semcms MEDIUM 5.9
CVE-2024-36801

A SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the lgid parameter in Download.php.

No fix yet
Fix from $1,600 2024-06-04
Semcms MEDIUM 6.5
CVE-2024-4595

A vulnerability has been found in SEMCMS up to 4.8 and classified as critical. Affected by this vulnerability is the function locate of the file func…

Fix: after 4.8
Fix from $1,600 2024-05-07
Semcms HIGH 7.1
CVE-2024-32409

An issue in SEMCMS v.4.8 allows a remote attacker to execute arbitrary code via a crafted script.

Mitigation only
Fix from $1,950 2024-04-19
Semcms CRITICAL 9.8
CVE-2024-30938

SQL Injection vulnerability in SEMCMS v.4.8 allows a remote attacker to obtain sensitive information via the ID parameter in the SEMCMS_User.php comp…

Mitigation only
Fix from $2,300 2024-04-19
Semcms CRITICAL 9.8
CVE-2024-31012

An issue was discovered in SEMCMS v.4.8, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via…

No fix yet
Fix from $2,300 2024-04-03
Semcms HIGH 7.5
CVE-2024-31010

SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the ID parameter in Banner.php.

No fix yet
Fix from $1,950 2024-04-03
Semcms MEDIUM 6.5
CVE-2024-31009

SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via lgid parameter in Banner.php.

No fix yet
Fix from $1,600 2024-04-03
Semcms HIGH 7.2
CVE-2024-28405

SEMCMS 4.8 is vulnerable to Incorrect Access Control. The code installs SEMCMS_Funtion.php before checking if the admin is a valid user in the admin …

No fix yet
Fix from $1,950 2024-03-29
Semcms CRITICAL 9.8
CVE-2024-25422

SQL Injection vulnerability in SEMCMS v.4.8 allows a remote attacker to execute arbitrary code and obtain sensitive information via the SEMCMS_Menu.p…

No fix yet
Fix from $2,300 2024-02-28
Semcms HIGH 7.5
CVE-2023-48864

SEMCMS v4.8 was discovered to contain a SQL injection vulnerability via the languageID parameter in /web_inc.php.

No fix yet
Fix from $1,950 2024-01-10
Semcms CRITICAL 9.8
CVE-2023-50563

Semcms v4.8 was discovered to contain a SQL injection vulnerability via the AID parameter at SEMCMS_Function.php.

No fix yet
Fix from $2,300 2023-12-14
Semcms HIGH 7.5
CVE-2023-48863

SEMCMS 3.9 is vulnerable to SQL Injection. Due to the lack of security checks on the input of the application, the attacker uses the existing applica…

No fix yet
Fix from $1,950 2023-12-04
Semcms HIGH 7.2
CVE-2020-23564

File Upload vulnerability in SEMCMS 3.9 allows remote attackers to run arbitrary code via SEMCMS_Upfile.php.

No fix yet
Fix from $1,950 2023-08-05
Semcms CRITICAL 9.8
CVE-2023-37647

SEMCMS v1.5 was discovered to contain a SQL injection vulnerability via the id parameter at /Ant_Suxin.php.

Mitigation only
Fix from $2,300 2023-07-31
Semcms CRITICAL 9.8
CVE-2020-18432

File Upload vulnerability in SEMCMS PHP 3.7 allows remote attackers to upload arbitrary files and gain escalated privileges.

Mitigation only
Fix from $2,300 2023-06-30
Semcms CRITICAL 9.8
CVE-2023-31707

SEMCMS 1.5 is vulnerable to SQL Injection via Ant_Rponse.php.

No fix yet
Fix from $2,300 2023-05-19
Semcms CRITICAL 9.8
CVE-2023-30090

Semcms Shop v4.2 was discovered to contain an arbitrary file uplaod vulnerability via the component SEMCMS_Upfile.php. This vulnerability allows atta…

Mitigation only
Fix from $2,300 2023-05-05