Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2009-2342
Disclosure Date: July 07, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in admin.php (aka the login page) in Content Management Made Easy (CMME) before 1.22 allows remote attackers to inject arbitrary web script or HTML via the username field.
0
Attacker Value
Unknown
CVE-2008-6159
Disclosure Date: February 18, 2009 (last updated October 04, 2023)
Content Management Made Easy (CMME) 1.19 allows remote attackers to obtain system information via a direct request to info.php, which invokes the phpinfo function.
0