Show filters
25 Total Results
Displaying 21-25 of 25
Sort by:
Attacker Value
Unknown
CVE-2023-52073
Disclosure Date: January 08, 2024 (last updated January 12, 2024)
FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/config_footer_updagte.
0
Attacker Value
Unknown
CVE-2023-52072
Disclosure Date: January 08, 2024 (last updated January 12, 2024)
FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/userconfig_updagte.
0
Attacker Value
Unknown
CVE-2024-21732
Disclosure Date: January 01, 2024 (last updated January 09, 2024)
FlyCms through abbaa5a allows XSS via the permission management feature.
0
Attacker Value
Unknown
CVE-2020-36065
Disclosure Date: May 08, 2023 (last updated October 08, 2023)
Cross Site Request Forgery (CSRF) vulnerability in FlyCms 1.0 allows attackers to add arbitrary administrator accounts via system/admin/admin_save.
0
Attacker Value
Unknown
CVE-2020-19613
Disclosure Date: April 01, 2021 (last updated February 22, 2025)
Server Side Request Forgery (SSRF) vulnerability in saveUrlAs function in ImagesService.java in sunkaifei FlyCMS version 20190503.
0