Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Zenario MEDIUM 5.4
CVE-2023-44769

A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows a local attacker to execute arbitrary code via a crafted script to the S…

No fix yet
Fix from $1,600 2023-10-25
Zenario MEDIUM 5.4
CVE-2023-44770

A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows an attacker to execute arbitrary code via a crafted script to the Organi…

No fix yet
Fix from $1,600 2023-10-06
Zenario MEDIUM 5.4
CVE-2023-44771

A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows a local attacker to execute arbitrary code via a crafted script to the P…

No fix yet
Fix from $1,600 2023-10-06
Zenario CRITICAL 9.8
CVE-2022-44136

Zenario CMS 9.3.57186 is vulnerable to Remote Code Excution (RCE).

No fix yet
Fix from $2,300 2022-11-30
Zenario MEDIUM 5.4
CVE-2022-4231

A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS 9.3.57595. This issue affects some unknown process…

No fix yet
Fix from $1,600 2022-11-30
Zenario MEDIUM 5.4
CVE-2022-44071

Zenario CMS 9.3.57186 is is vulnerable to Cross Site Scripting (XSS) via profile.

No fix yet
Fix from $1,600 2022-11-16
Zenario MEDIUM 5.4
CVE-2022-44073

Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via svg,Users & Contacts.

No fix yet
Fix from $1,600 2022-11-16
Zenario MEDIUM 5.4
CVE-2022-44069

Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via the Nest library module.

No fix yet
Fix from $1,600 2022-11-16
Zenario MEDIUM 5.4
CVE-2022-44070

Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via News articles.

No fix yet
Fix from $1,600 2022-11-16
Zenario MEDIUM 6.1
CVE-2020-36608

A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS. Affected by this issue is some unknown functional…

Fix: 8.7+
Fix from $1,600 2022-11-02
Zenario HIGH 7.2
CVE-2021-42171

Zenario CMS 9.0.54156 is vulnerable to File Upload. The web server can be compromised by uploading and executing a web-shell which can run commands, …

No fix yet
Fix from $1,950 2022-03-14
Zenario HIGH 7.2
CVE-2022-23043

Zenario CMS 9.2 allows an authenticated admin user to bypass the file upload restriction by creating a new 'File/MIME Types' using the '.phar' extens…

Patch available
Fix from $1,950 2022-02-24
Zenario CRITICAL 9.1
CVE-2021-26830

SQL Injection in Tribalsystems Zenario CMS 8.8.52729 allows remote attackers to access the database or delete the plugin. This is accomplished via th…

Mitigation only
Fix from $2,300 2021-04-16
Zenario HIGH 8.8
CVE-2018-18420

Cross-Site Request Forgery (CSRF) vulnerability was discovered in the 8.3 version of Zenario Content Management System via the admin/organizer.ajax.p…

No fix yet
Fix from $1,950 2018-10-19
Zenario HIGH 8.8
CVE-2018-5960

Zenario v7.1 - v7.6 has SQL injection via the `Name` input field of organizer.php or admin_boxes.ajax.php in the `Categories - Edit` module.

Mitigation only
Fix from $1,950 2018-01-22