Show filters
14 Total Results
Displaying 1-10 of 14
Sort by:
Attacker Value
Unknown
CVE-2022-46999
Disclosure Date: January 26, 2023 (last updated February 24, 2025)
Tuzicms v2.0.6 was discovered to contain a SQL injection vulnerability via the component \App\Manage\Controller\UserController.class.php.
0
Attacker Value
Unknown
CVE-2023-0244
Disclosure Date: January 12, 2023 (last updated February 24, 2025)
A vulnerability classified as critical was found in TuziCMS 2.0.6. This vulnerability affects the function delall of the file \App\Manage\Controller\KefuController.class.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-218152.
0
Attacker Value
Unknown
CVE-2023-0243
Disclosure Date: January 12, 2023 (last updated February 24, 2025)
A vulnerability classified as critical has been found in TuziCMS 2.0.6. This affects the function index of the file App\Manage\Controller\ArticleController.class.php of the component Article Module. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-218151.
0
Attacker Value
Unknown
CVE-2022-23882
Disclosure Date: March 28, 2022 (last updated February 23, 2025)
TuziCMS 2.0.6 is affected by SQL injection in \App\Manage\Controller\BannerController.class.php.
0
Attacker Value
Unknown
CVE-2022-26301
Disclosure Date: March 24, 2022 (last updated February 23, 2025)
TuziCMS v2.0.6 was discovered to contain a SQL injection vulnerability via the component App\Manage\Controller\ZhuantiController.class.php.
0
Attacker Value
Unknown
CVE-2021-44349
Disclosure Date: December 03, 2021 (last updated February 23, 2025)
SQL Injection vulnerability exists in TuziCMS v2.0.6 via the id parameter in App\Manage\Controller\DownloadController.class.php.
0
Attacker Value
Unknown
CVE-2021-44348
Disclosure Date: December 03, 2021 (last updated February 23, 2025)
SQL Injection vulnerability exists in TuziCMS v2.0.6 via the id parameer in App\Manage\Controller\AdvertController.class.php.
0
Attacker Value
Unknown
CVE-2021-44347
Disclosure Date: December 03, 2021 (last updated February 23, 2025)
SQL Injection vulnerability exists in TuziCMS v2.0.6 in App\Manage\Controller\GuestbookController.class.php.
0
Attacker Value
Unknown
CVE-2019-16659
Disclosure Date: September 21, 2019 (last updated November 27, 2024)
TuziCMS 2.0.6 has index.php/manage/link/do_add CSRF.
0
Attacker Value
Unknown
CVE-2019-16658
Disclosure Date: September 21, 2019 (last updated November 27, 2024)
TuziCMS 2.0.6 has index.php/manage/notice/do_add CSRF.
0