Show filters
52 Total Results
Displaying 51-52 of 52
Sort by:
Attacker Value
Unknown

CVE-2015-8813

Disclosure Date: March 03, 2017 (last updated November 26, 2024)
The Page_Load function in Umbraco.Web/umbraco.presentation/umbraco/dashboard/FeedProxy.aspx.cs in Umbraco before 7.4.0 allows remote attackers to conduct server-side request forgery (SSRF) attacks via the url parameter.
0
Attacker Value
Unknown

CVE-2013-4793

Disclosure Date: December 27, 2014 (last updated October 05, 2023)
The update function in umbraco.webservices/templates/templateService.cs in the TemplateService component in Umbraco CMS before 6.0.4 does not require authentication, which allows remote attackers to execute arbitrary ASP.NET code via a crafted SOAP request.
0