Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Cm3 Acora Cms CRITICAL 10.0
CVE-2025-63314

A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user pas…

Mitigation only
Fix from $2,300 2026-01-12
Acora Cms HIGH 8.8
CVE-2025-25967

Acora CMS version 10.1.1 is vulnerable to Cross-Site Request Forgery (CSRF). This flaw enables attackers to trick authenticated users into performing…

Mitigation only
Fix from $1,950 2025-03-03
Cm3 Acora Content Management System MEDIUM 6.0
CVE-2025-25968

DDSN Interactive cm3 Acora CMS version 10.1.1 contains an improper access control vulnerability. An editor-privileged user can access sensitive infor…

Mitigation only
Fix from $1,600 2025-02-20
Cm3 Acora Content Management System HIGH 8.1
CVE-2025-22964

DDSN Interactive cm3 Acora CMS version 10.1.1 has an unauthenticated time-based blind SQL Injection vulnerability caused by insufficient input saniti…

Mitigation only
Fix from $1,950 2025-01-15
Cm3 Acora Content Management System MEDIUM 5.0
CVE-2013-4724

DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not include the HTTPOnly flag in a Set-C…

Mitigation only
Fix from $1,600 2014-06-06
Cm3 Acora Content Management System MEDIUM 5.0
CVE-2013-4725

DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not set the secure flag for an unspecifi…

Mitigation only
Fix from $1,600 2014-06-06
Cm3 Acora Content Management System MEDIUM 5.0
CVE-2013-4727

DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, allows remote attackers to obtain sensitive i…

Mitigation only
Fix from $1,600 2014-06-06
Cm3 Acora Content Management System MEDIUM 5.0
CVE-2013-4728

DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, allows remote attackers to obtain sensitive i…

Mitigation only
Fix from $1,600 2014-06-06
Cm3 Acora Content Management System MEDIUM 6.8
CVE-2013-4726

Cross-site request forgery (CSRF) vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other vers…

No fix yet
Fix from $1,600 2014-04-25
Cm3 Acora Content Management System MEDIUM 5.8
CVE-2013-4723

Open redirect vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions allows remote a…

No fix yet
Fix from $1,600 2014-04-25
Cm3cms HIGH 7.5
CVE-2006-0221

SQL injection vulnerability in index.asp in the Admin Panel in Dragon Design Services Network (DDSN) cm3 content manager (CM3CMS) allows remote attac…

Mitigation only
Fix from $1,950 2006-01-16