Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2009-2342

Disclosure Date: July 07, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in admin.php (aka the login page) in Content Management Made Easy (CMME) before 1.22 allows remote attackers to inject arbitrary web script or HTML via the username field.
0
Attacker Value
Unknown

CVE-2008-6159

Disclosure Date: February 18, 2009 (last updated October 04, 2023)
Content Management Made Easy (CMME) 1.19 allows remote attackers to obtain system information via a direct request to info.php, which invokes the phpinfo function.
0