Show filters
113 Total Results
Displaying 51-60 of 113
Sort by:
Attacker Value
Unknown
CVE-2020-20975
Disclosure Date: August 12, 2021 (last updated February 23, 2025)
In \lib\admin\action\dataaction.class.php in Gxlcms v1.1, SQL Injection exists via the $filename parameter.
0
Attacker Value
Unknown
CVE-2020-21005
Disclosure Date: June 03, 2021 (last updated February 22, 2025)
WellCMS 2.0 beta3 is vulnerable to File Upload. A user can log in to the CMS background and upload a picture. Because the upload file type is controllable, the user can modify the upload file type to get webshell.
0
Attacker Value
Unknown
CVE-2019-9572
Disclosure Date: March 05, 2019 (last updated November 27, 2024)
SchoolCMS version 2.3.1 allows file upload via the theme upload feature at admin.php?m=admin&c=theme&a=upload by using the .zip extension along with the _Static substring, changing the Content-Type to application/zip, and placing PHP code after the ZIP header. This ultimately allows execution of arbitrary PHP code in Public\Home\1_Static.php because of mishandling in the Application\Admin\Controller\ThemeController.class.php Upload() function.
0
Attacker Value
Unknown
CVE-2019-9181
Disclosure Date: February 26, 2019 (last updated November 27, 2024)
SchoolCMS version 2.3.1 allows file upload via the logo upload feature at admin.php?m=admin&c=site&a=save by using the .jpg extension, changing the Content-Type to image/php, and placing PHP code after the JPEG data. This ultimately allows execution of arbitrary PHP code.
0
Attacker Value
Unknown
CVE-2019-8334
Disclosure Date: February 13, 2019 (last updated November 27, 2024)
An issue was discovered in SchoolCMS 2.3.1. There is an XSS vulnerability via index.php?a=Index&c=Channel&m=Home&viewid=[XSS].
0
Attacker Value
Unknown
CVE-2019-8335
Disclosure Date: February 13, 2019 (last updated November 27, 2024)
An issue was discovered in SchoolCMS 2.3.1. There is an XSS vulnerability via index.php?a=Index&c=Channel&m=Home&id=[XSS].
0
Attacker Value
Unknown
CVE-2019-6244
Disclosure Date: January 12, 2019 (last updated November 27, 2024)
An issue was discovered in UsualToolCMS 8.0. cmsadmin/a_sqlbackx.php?t=sql allows CSRF attacks that can execute SQL statements, and consequently execute arbitrary PHP code by writing that code into a .php file.
0
Attacker Value
Unknown
CVE-2018-20128
Disclosure Date: December 13, 2018 (last updated November 27, 2024)
An issue was discovered in UsualToolCMS v8.0. cmsadmin\a_sqlback.php allows remote attackers to delete arbitrary files via a backname[] directory-traversal pathname followed by a crafted substring.
0
Attacker Value
Unknown
CVE-2018-18888
Disclosure Date: November 01, 2018 (last updated November 27, 2024)
An issue was discovered in laravelCMS through 2018-04-02. \app\Http\Controllers\Backend\ProfileController.php allows upload of arbitrary PHP files because the file extension is not properly checked and uploaded files are not properly renamed.
0
Attacker Value
Unknown
CVE-2018-18487
Disclosure Date: October 18, 2018 (last updated November 27, 2024)
In \lib\admin\action\dataaction.class.php in Gxlcms v2.0, the database backup filename generation uses mt_rand() unsafely, resulting in predictable database backup file locations.
0