Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown
CVE-2024-22568
Disclosure Date: January 18, 2024 (last updated January 21, 2024)
FlyCms v1.0 contains a Cross-Site Request Forgery (CSRF) vulnerability via /system/score/del.
0
Attacker Value
Unknown
CVE-2024-22549
Disclosure Date: January 18, 2024 (last updated January 21, 2024)
FlyCms 1.0 is vulnerable to Cross Site Scripting (XSS) in the email settings of the website settings section.
0
Attacker Value
Unknown
CVE-2024-22548
Disclosure Date: January 18, 2024 (last updated January 21, 2024)
FlyCms 1.0 is vulnerable to Cross Site Scripting (XSS) in the system website settings website name section.
0
Attacker Value
Unknown
CVE-2023-52074
Disclosure Date: January 08, 2024 (last updated January 12, 2024)
FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component system/site/webconfig_updagte.
0
Attacker Value
Unknown
CVE-2023-52073
Disclosure Date: January 08, 2024 (last updated January 12, 2024)
FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/config_footer_updagte.
0
Attacker Value
Unknown
CVE-2023-52072
Disclosure Date: January 08, 2024 (last updated January 12, 2024)
FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/userconfig_updagte.
0
Attacker Value
Unknown
CVE-2020-36065
Disclosure Date: May 08, 2023 (last updated October 08, 2023)
Cross Site Request Forgery (CSRF) vulnerability in FlyCms 1.0 allows attackers to add arbitrary administrator accounts via system/admin/admin_save.
0