Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Aerocms CRITICAL 9.8
CVE-2022-50895

Aero CMS 0.0.1 contains a SQL injection vulnerability in the author parameter that allows attackers to manipulate database queries. Attackers can exp…

Mitigation only
Fix from $2,300 2026-01-13
Aerocms MEDIUM 5.4
CVE-2023-29847

AeroCMS v0.0.1 was discovered to contain multiple stored cross-site scripting (XSS) vulnerabilities via the comment_author and comment_content parame…

No fix yet
Fix from $1,600 2023-04-14
Aerocms HIGH 7.5
CVE-2022-46137

AeroCMS v0.0.1 is vulnerable to Directory Traversal. The impact is: obtain sensitive information (remote). The component is: AeroCMS v0.0.1.

No fix yet
Fix from $1,950 2022-12-16
Aerocms HIGH 7.2
CVE-2022-46135

In AeroCms v0.0.1, there is an arbitrary file upload vulnerability at /admin/posts.php?source=edit_post , through which we can upload webshell and co…

No fix yet
Fix from $1,950 2022-12-16
Aerocms HIGH 7.2
CVE-2022-46051

The approve parameter from the AeroCMS-v0.0.1 CMS system is vulnerable to SQL injection attacks.

No fix yet
Fix from $1,950 2022-12-13
Aerocms MEDIUM 6.5
CVE-2022-46059

AeroCMS v0.0.1 is vulnerable to Cross Site Request Forgery (CSRF).

No fix yet
Fix from $1,600 2022-12-13
Aerocms MEDIUM 6.1
CVE-2022-46061

AeroCMS v0.0.1 is vulnerable to ClickJacking.

No fix yet
Fix from $1,600 2022-12-13
Aerocms HIGH 7.5
CVE-2022-45329

AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the Search parameter. This vulnerability allows attackers to access databa…

No fix yet
Fix from $1,950 2022-11-29
Aerocms HIGH 7.5
CVE-2022-45330

AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the Category parameter at \category.php. This vulnerability allows attacke…

No fix yet
Fix from $1,950 2022-11-22
Aerocms HIGH 7.5
CVE-2022-45331

AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the p_id parameter at \post.php. This vulnerability allows attackers to ac…

No fix yet
Fix from $1,950 2022-11-22
Aerocms HIGH 8.8
CVE-2022-38305

AeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the component /admin/profile.php. This vulnerability allows attac…

No fix yet
Fix from $1,950 2022-09-13
Aerocms MEDIUM 6.5
CVE-2022-38812

AeroCMS 0.1.1 is vulnerable to SQL Injection via the author parameter.

No fix yet
Fix from $1,600 2022-08-31
Aerocms HIGH 7.2
CVE-2022-27061

AeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the Post Image function under the Admin panel. This vulnerability…

No fix yet
Fix from $1,950 2022-04-08
Aerocms MEDIUM 6.1
CVE-2022-27063

AeroCMS v0.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via view_all_comments.php. This vulnerability allows attac…

No fix yet
Fix from $1,600 2022-04-08