Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2023-44769
A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows a local attacker to execute arbitrary code via a crafted script to the S…
Zenario
No fix yet
MEDIUM 5.4
CVE-2023-44770
A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows an attacker to execute arbitrary code via a crafted script to the Organi…
Zenario
No fix yet
MEDIUM 5.4
CVE-2023-44771
A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows a local attacker to execute arbitrary code via a crafted script to the P…
Zenario
No fix yet
CRITICAL 9.8
CVE-2022-44136
Zenario CMS 9.3.57186 is vulnerable to Remote Code Excution (RCE).
Zenario
No fix yet
MEDIUM 5.4
CVE-2022-4231
A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS 9.3.57595. This issue affects some unknown process…
Zenario
No fix yet
MEDIUM 5.4
CVE-2022-44071
Zenario CMS 9.3.57186 is is vulnerable to Cross Site Scripting (XSS) via profile.
Zenario
No fix yet
MEDIUM 5.4
CVE-2022-44073
Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via svg,Users & Contacts.
Zenario
No fix yet
MEDIUM 5.4
CVE-2022-44069
Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via the Nest library module.
Zenario
No fix yet
MEDIUM 5.4
CVE-2022-44070
Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via News articles.
Zenario
No fix yet
MEDIUM 6.1
CVE-2020-36608
A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS. Affected by this issue is some unknown functional…
Zenario
8.7+
HIGH 7.2
CVE-2021-42171
Zenario CMS 9.0.54156 is vulnerable to File Upload. The web server can be compromised by uploading and executing a web-shell which can run commands, …
Zenario
No fix yet
HIGH 7.2
CVE-2022-23043
Zenario CMS 9.2 allows an authenticated admin user to bypass the file upload restriction by creating a new 'File/MIME Types' using the '.phar' extens…
Zenario
Patch available
CRITICAL 9.1
CVE-2021-26830
SQL Injection in Tribalsystems Zenario CMS 8.8.52729 allows remote attackers to access the database or delete the plugin. This is accomplished via th…
Zenario
Mitigation only
HIGH 8.8
CVE-2018-18420
Cross-Site Request Forgery (CSRF) vulnerability was discovered in the 8.3 version of Zenario Content Management System via the admin/organizer.ajax.p…
Zenario
No fix yet
HIGH 8.8
CVE-2018-5960
Zenario v7.1 - v7.6 has SQL injection via the `Name` input field of organizer.php or admin_boxes.ajax.php in the `Categories - Edit` module.
Zenario
Mitigation only