Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2023-44769 A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows a local attacker to execute arbitrary code via a crafted script to the S… Zenario No fix yet Fix from $1,6002023-10-25 MEDIUM 5.4 CVE-2023-44770 A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows an attacker to execute arbitrary code via a crafted script to the Organi… Zenario No fix yet Fix from $1,6002023-10-06 MEDIUM 5.4 CVE-2023-44771 A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows a local attacker to execute arbitrary code via a crafted script to the P… Zenario No fix yet Fix from $1,6002023-10-06 CRITICAL 9.8 CVE-2022-44136 Zenario CMS 9.3.57186 is vulnerable to Remote Code Excution (RCE). Zenario No fix yet Fix from $2,3002022-11-30 MEDIUM 5.4 CVE-2022-4231 A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS 9.3.57595. This issue affects some unknown process… Zenario No fix yet Fix from $1,6002022-11-30 MEDIUM 5.4 CVE-2022-44071 Zenario CMS 9.3.57186 is is vulnerable to Cross Site Scripting (XSS) via profile. Zenario No fix yet Fix from $1,6002022-11-16 MEDIUM 5.4 CVE-2022-44073 Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via svg,Users & Contacts. Zenario No fix yet Fix from $1,6002022-11-16 MEDIUM 5.4 CVE-2022-44069 Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via the Nest library module. Zenario No fix yet Fix from $1,6002022-11-16 MEDIUM 5.4 CVE-2022-44070 Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via News articles. Zenario No fix yet Fix from $1,6002022-11-16 MEDIUM 6.1 CVE-2020-36608 A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS. Affected by this issue is some unknown functional… Zenario 8.7+ Fix from $1,6002022-11-02 HIGH 7.2 CVE-2021-42171 Zenario CMS 9.0.54156 is vulnerable to File Upload. The web server can be compromised by uploading and executing a web-shell which can run commands, … Zenario No fix yet Fix from $1,9502022-03-14 HIGH 7.2 CVE-2022-23043 Zenario CMS 9.2 allows an authenticated admin user to bypass the file upload restriction by creating a new 'File/MIME Types' using the '.phar' extens… Zenario Patch available Fix from $1,9502022-02-24 CRITICAL 9.1 CVE-2021-26830 SQL Injection in Tribalsystems Zenario CMS 8.8.52729 allows remote attackers to access the database or delete the plugin. This is accomplished via th… Zenario Mitigation only Fix from $2,3002021-04-16 HIGH 8.8 CVE-2018-18420 Cross-Site Request Forgery (CSRF) vulnerability was discovered in the 8.3 version of Zenario Content Management System via the admin/organizer.ajax.p… Zenario No fix yet Fix from $1,9502018-10-19 HIGH 8.8 CVE-2018-5960 Zenario v7.1 - v7.6 has SQL injection via the `Name` input field of organizer.php or admin_boxes.ajax.php in the `Categories - Edit` module. Zenario Mitigation only Fix from $1,9502018-01-22