Vulnerability index

Browse CVEs

13 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2024-48237 WTCMS 1.0 is vulnerable to Incorrect Access Control in \Common\Controller\HomebaseController.class.php. Wtcms No fix yet Fix from $2,3002024-10-25 MEDIUM 6.5 CVE-2020-20343 WTCMS 1.0 contains a cross-site request forgery (CSRF) vulnerability in the index.php?g=admin&m=nav&a=add_post component that allows attackers to arb… Wtcms No fix yet Fix from $1,6002021-09-01 MEDIUM 5.4 CVE-2020-20345 WTCMS 1.0 contains a reflective cross-site scripting (XSS) vulnerability in the page management background which allows attackers to obtain cookies v… Wtcms No fix yet Fix from $1,6002021-09-01 MEDIUM 5.4 CVE-2020-20344 WTCMS 1.0 contains a reflective cross-site scripting (XSS) vulnerability in the keyword search function under the background articles module. Wtcms No fix yet Fix from $1,6002021-09-01 MEDIUM 5.4 CVE-2020-20347 WTCMS 1.0 contains a stored cross-site scripting (XSS) vulnerability in the source field under the article management module. Wtcms No fix yet Fix from $1,6002021-09-01 MEDIUM 5.4 CVE-2020-20348 WTCMS 1.0 contains a stored cross-site scripting (XSS) vulnerability in the link field under the background menu management module. Wtcms No fix yet Fix from $1,6002021-09-01 MEDIUM 5.4 CVE-2020-20349 WTCMS 1.0 contains a stored cross-site scripting (XSS) vulnerability in the link address field under the background links module. Wtcms No fix yet Fix from $1,6002021-09-01 MEDIUM 6.5 CVE-2019-16719 WTCMS 1.0 allows index.php?g=admin&m=index&a=index CSRF with resultant XSS. Wtcms No fix yet Fix from $1,6002019-09-23 CRITICAL 9.8 CVE-2019-8908 An issue was discovered in WTCMS 1.0. It allows remote attackers to execute arbitrary PHP code by going to the "Setting -> Mailbox configuration -> R… Wtcms No fix yet Fix from $2,3002019-02-18 HIGH 8.8 CVE-2019-8910 An issue was discovered in WTCMS 1.0. It allows index.php?g=admin&m=setting&a=site_post CSRF. Wtcms No fix yet Fix from $1,9502019-02-18 HIGH 7.5 CVE-2019-8909 An issue was discovered in WTCMS 1.0. It allows remote attackers to cause a denial of service (resource consumption) via crafted dimensions for the v… Wtcms No fix yet Fix from $1,9502019-02-18 MEDIUM 6.1 CVE-2019-8911 An issue was discovered in WTCMS 1.0. It has stored XSS via the third text box (for the website statistics code). Wtcms No fix yet Fix from $1,6002019-02-18 HIGH 8.8 CVE-2018-10267 WTCMS 1.0 has a CSRF vulnerability to add an administrator account via the index.php?admin&m=user&a=add_post URI. Wtcms No fix yet Fix from $1,9502018-04-22