Vulnerability index

Browse CVEs

36 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Semcms CRITICAL 9.8
CVE-2026-1552

A security vulnerability has been detected in SEMCMS 5.0. This vulnerability affects unknown code of the file /SEMCMS_Info.php. The manipulation of t…

Mitigation only
Fix from $2,300 2026-01-29
Semcms CRITICAL 9.8
CVE-2024-46103

SEMCMS 4.8 is vulnerable to SQL Injection via SEMCMS_Main.php.

No fix yet
Fix from $2,300 2024-09-20
Semcms HIGH 7.5
CVE-2024-36800

A SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the ID parameter in Download.php.

No fix yet
Fix from $1,950 2024-06-04
Semcms MEDIUM 5.9
CVE-2024-36801

A SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the lgid parameter in Download.php.

No fix yet
Fix from $1,600 2024-06-04
Semcms HIGH 7.1
CVE-2024-32409

An issue in SEMCMS v.4.8 allows a remote attacker to execute arbitrary code via a crafted script.

Mitigation only
Fix from $1,950 2024-04-19
Semcms CRITICAL 9.8
CVE-2024-30938

SQL Injection vulnerability in SEMCMS v.4.8 allows a remote attacker to obtain sensitive information via the ID parameter in the SEMCMS_User.php comp…

Mitigation only
Fix from $2,300 2024-04-19
Semcms CRITICAL 9.8
CVE-2024-31012

An issue was discovered in SEMCMS v.4.8, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via…

No fix yet
Fix from $2,300 2024-04-03
Semcms HIGH 7.5
CVE-2024-31010

SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the ID parameter in Banner.php.

No fix yet
Fix from $1,950 2024-04-03
Semcms MEDIUM 6.5
CVE-2024-31009

SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via lgid parameter in Banner.php.

No fix yet
Fix from $1,600 2024-04-03
Semcms HIGH 7.2
CVE-2024-28405

SEMCMS 4.8 is vulnerable to Incorrect Access Control. The code installs SEMCMS_Funtion.php before checking if the admin is a valid user in the admin …

No fix yet
Fix from $1,950 2024-03-29
Semcms CRITICAL 9.8
CVE-2024-25422

SQL Injection vulnerability in SEMCMS v.4.8 allows a remote attacker to execute arbitrary code and obtain sensitive information via the SEMCMS_Menu.p…

No fix yet
Fix from $2,300 2024-02-28
Semcms HIGH 7.5
CVE-2023-48864

SEMCMS v4.8 was discovered to contain a SQL injection vulnerability via the languageID parameter in /web_inc.php.

No fix yet
Fix from $1,950 2024-01-10
Semcms CRITICAL 9.8
CVE-2023-50563

Semcms v4.8 was discovered to contain a SQL injection vulnerability via the AID parameter at SEMCMS_Function.php.

No fix yet
Fix from $2,300 2023-12-14
Semcms HIGH 7.5
CVE-2023-48863

SEMCMS 3.9 is vulnerable to SQL Injection. Due to the lack of security checks on the input of the application, the attacker uses the existing applica…

No fix yet
Fix from $1,950 2023-12-04
Semcms HIGH 7.2
CVE-2020-23564

File Upload vulnerability in SEMCMS 3.9 allows remote attackers to run arbitrary code via SEMCMS_Upfile.php.

No fix yet
Fix from $1,950 2023-08-05
Semcms CRITICAL 9.8
CVE-2023-37647

SEMCMS v1.5 was discovered to contain a SQL injection vulnerability via the id parameter at /Ant_Suxin.php.

Mitigation only
Fix from $2,300 2023-07-31
Semcms CRITICAL 9.8
CVE-2020-18432

File Upload vulnerability in SEMCMS PHP 3.7 allows remote attackers to upload arbitrary files and gain escalated privileges.

Mitigation only
Fix from $2,300 2023-06-30
Semcms CRITICAL 9.8
CVE-2023-31707

SEMCMS 1.5 is vulnerable to SQL Injection via Ant_Rponse.php.

No fix yet
Fix from $2,300 2023-05-19
Semcms CRITICAL 9.8
CVE-2023-30090

Semcms Shop v4.2 was discovered to contain an arbitrary file uplaod vulnerability via the component SEMCMS_Upfile.php. This vulnerability allows atta…

Mitigation only
Fix from $2,300 2023-05-05
Semcms CRITICAL 9.8
CVE-2021-38730

SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Info.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38731

SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Zekou.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38732

SEMCMS SHOP v 1.1 is vulnerable to SQL via Ant_Message.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38733

SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_BlogCat.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38217

SEMCMS v 1.2 is vulnerable to SQL Injection via SEMCMS_User.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38729

SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Plist.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms MEDIUM 6.1
CVE-2021-38728

SEMCMS SHOP v 1.1 is vulnerable to Cross Site Scripting (XSS) via Ant_M_Coup.php.

No fix yet
Fix from $1,600 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38734

SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Menu.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38736

SEMCMS Shop V 1.1 is vulnerable to SQL Injection via Ant_Global.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2021-38737

SEMCMS v 1.1 is vulnerable to SQL Injection via Ant_Pro.php.

No fix yet
Fix from $2,300 2022-10-28
Semcms CRITICAL 9.8
CVE-2022-2726

A vulnerability classified as critical has been found in SEMCMS. This affects an unknown part of the file Ant_Check.php. The manipulation of the argu…

Mitigation only
Fix from $2,300 2022-08-09