Vulnerability index

Browse CVEs

15 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Cmseasy HIGH 8.1
CVE-2025-1336

A vulnerability has been found in CmsEasy 7.7.7.9 and classified as problematic. Affected by this vulnerability is the function deleteimg_action in t…

No fix yet
Fix from $1,950 2025-02-16
Cmseasy HIGH 8.1
CVE-2025-1335

A vulnerability, which was classified as problematic, was found in CmsEasy 7.7.7.9. Affected is the function deleteimg_action in the library lib/admi…

No fix yet
Fix from $1,950 2025-02-16
Cmseasy MEDIUM 6.5
CVE-2025-1106

A vulnerability classified as critical has been found in CmsEasy 7.7.7.9. This affects the function deletedir_action/restore_action in the library li…

No fix yet
Fix from $1,600 2025-02-07
Cmseasy MEDIUM 6.5
CVE-2025-0973

A vulnerability classified as critical was found in CmsEasy 7.7.7.9. This vulnerability affects the function backAll_action in the library lib/admin/…

No fix yet
Fix from $1,600 2025-02-03
Cmseasy HIGH 7.5
CVE-2024-34315

CmsEasy v7.7.7.9 was discovered to contain a local file inclusion vunerability via the file_get_contents function in the fckedit_action method of /ad…

No fix yet
Fix from $1,950 2024-05-07
Cmseasy HIGH 7.5
CVE-2024-31551

Directory Traversal vulnerability in lib/admin/image.admin.php in cmseasy v7.7.7.9 20240105 allows attackers to delete arbitrary files via crafted GE…

Mitigation only
Fix from $1,950 2024-04-26
Cmseasy MEDIUM 6.4
CVE-2024-32163

CMSeasy 7.7.7.9 is vulnerable to code execution.

No fix yet
Fix from $1,600 2024-04-17
Cmseasy HIGH 7.5
CVE-2020-18406

An issue was discovered in cmseasy v7.0.0 that allows user credentials to be sent in clear text due to no encryption of form data.

No fix yet
Fix from $1,950 2023-06-27
Cmseasy CRITICAL 9.8
CVE-2023-34880

cmseasy v7.7.7.7 20230520 was discovered to contain a path traversal vulnerability via the add_action method at lib/admin/language_admin.php. This vu…

No fix yet
Fix from $2,300 2023-06-15
Cmseasy HIGH 8.8
CVE-2021-42643

cmseasy V7.7.5_20211012 is affected by an arbitrary file write vulnerability. Through this vulnerability, a PHP script file is written to the website…

No fix yet
Fix from $1,950 2022-05-17
Cmseasy MEDIUM 6.5
CVE-2021-42644

cmseasy V7.7.5_20211012 is affected by an arbitrary file read vulnerability. After login, the configuration file information of the website such as t…

No fix yet
Fix from $1,600 2022-05-17
Cmseasy MEDIUM 6.1
CVE-2019-8432

In CmsEasy 7.0, there is XSS via the ckplayer.php url parameter.

No fix yet
Fix from $1,600 2019-02-18
Cmseasy MEDIUM 6.1
CVE-2019-8434

In CmsEasy 7.0, there is XSS via the ckplayer.php autoplay parameter.

No fix yet
Fix from $1,600 2019-02-18
Cmseasy HIGH 8.8
CVE-2018-11679

An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability that can add an article via /index.php?case=table&act=add&table=archiv…

No fix yet
Fix from $1,950 2018-06-02
Cmseasy MEDIUM 6.5
CVE-2018-11680

An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability in the rich text editor that can add an IFRAME element. This might be …

No fix yet
Fix from $1,600 2018-06-02