Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2025-8122
Improper neutralization of input provided by an authorized user in article positioning functionality allows for Blind SQL Injection attacks. This iss…
Pad Cms
after 1.2.1
CRITICAL 9.8
CVE-2025-8120
Due to client-controlled permission check parameter, PAD CMS's upload photo functionality allows an unauthenticated remote attacker to upload files o…
Pad Cms
after 1.2.1
HIGH 8.8
CVE-2025-8121
Improper neutralization of input provided by an authorized user in article positioning functionality allows for Blind SQL Injection attacks. This iss…
Pad Cms
after 1.2.1
MEDIUM 6.5
CVE-2025-8118
PAD CMS implements weak client-side brute-force protection by utilizing two cookies: login_count and login_timeout. Information about attempt count …
Pad Cms
after 1.2.1
CRITICAL 9.8
CVE-2025-7063
Due to client-controlled permission check parameter, PAD CMS's file upload functionality allows an unauthenticated remote attacker to upload files of…
Pad Cms
after 1.2.1
CRITICAL 9.8
CVE-2025-7065
Due to client-controlled permission check parameter, PAD CMS's photo upload functionality allows an unauthenticated remote attacker to upload files o…
Pad Cms
after 1.2.1
HIGH 7.5
CVE-2025-8117
PAD CMS improperly initializes parameter used for password recovery, which allows to change password for any user that did not use reset password fun…
Pad Cms
after 1.2.1
MEDIUM 6.1
CVE-2025-8116
PAD CMS is vulnerable to Reflected XSS in printing and save to PDF functionality. Malicious attacker can craft special URL, which will result in arbi…
Pad Cms
after 1.2.1