Show filters
106 Total Results
Displaying 51-60 of 106
Sort by:
Attacker Value
Unknown
CVE-2020-6754
Disclosure Date: February 05, 2020 (last updated February 21, 2025)
dotCMS before 5.2.4 is vulnerable to directory traversal, leading to incorrect access control. It allows an attacker to read or execute files under $TOMCAT_HOME/webapps/ROOT/assets (which should be a protected directory). Additionally, attackers can upload temporary files (e.g., .jsp files) into /webapps/ROOT/assets/tmp_upload, which can lead to remote command execution (with the permissions of the user running the dotCMS application).
0
Attacker Value
Unknown
CVE-2019-17417
Disclosure Date: October 10, 2019 (last updated November 27, 2024)
PbootCMS 2.0.2 allows XSS via vectors involving the Pboot/admin.php?p=/Single/index/mcode/1 and Pboot/?contact/ URIs.
0
Attacker Value
Unknown
CVE-2019-17370
Disclosure Date: October 09, 2019 (last updated November 27, 2024)
OTCMS v3.85 allows arbitrary PHP Code Execution because admin/sysCheckFile_deal.php blocks "into outfile" in a SELECT statement, but does not block the "into/**/outfile" manipulation. Therefore, the attacker can create a .php file.
0
Attacker Value
Unknown
CVE-2019-17369
Disclosure Date: October 09, 2019 (last updated November 27, 2024)
OTCMS v3.85 has CSRF in the admin/member_deal.php Admin Panel page, leading to creation of a new management group account, as demonstrated by superadmin.
0
Attacker Value
Unknown
CVE-2019-13971
Disclosure Date: July 19, 2019 (last updated November 27, 2024)
OTCMS 3.81 allows XSS via the mode parameter in an apiRun.php?mudi=autoRun request.
0
Attacker Value
Unknown
CVE-2019-12872
Disclosure Date: June 18, 2019 (last updated November 27, 2024)
dotCMS before 5.1.6 is vulnerable to a SQL injection that can be exploited by an attacker of the role Publisher via view_unpushed_bundles.jsp.
0
Attacker Value
Unknown
CVE-2019-12309
Disclosure Date: May 23, 2019 (last updated November 27, 2024)
dotCMS before 5.1.0 has a path traversal vulnerability exploitable by an administrator to create files. The vulnerability is caused by the insecure extraction of a ZIP archive.
0
Attacker Value
Unknown
CVE-2019-11846
Disclosure Date: May 14, 2019 (last updated November 27, 2024)
/servlets/ajax_file_upload?fieldName=binary3 in dotCMS 5.1.1 allows XSS and HTML Injection.
0
Attacker Value
Unknown
CVE-2018-17422
Disclosure Date: March 07, 2019 (last updated November 27, 2024)
dotCMS before 5.0.2 has open redirects via the html/common/forward_js.jsp FORWARD_URL parameter or the html/portlet/ext/common/page_preview_popup.jsp hostname parameter.
0
Attacker Value
Unknown
CVE-2019-8422
Disclosure Date: February 17, 2019 (last updated November 27, 2024)
A SQL Injection vulnerability exists in PbootCMS v1.3.2 via the description parameter in apps\admin\controller\content\ContentController.php.
0