Filtered by vendor Frogcms Project Subscriptions
Total 24 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-10318 1 Frogcms Project 1 Frogcms 2024-08-05 N/A
Frog CMS 0.9.5 has XSS via the admin/?/page/edit page[keywords] parameter, aka Edit Page Metadata.
CVE-2018-10319 1 Frogcms Project 1 Frogcms 2024-08-05 N/A
Frog CMS 0.9.5 has XSS via the admin/?/snippet/edit snippet[name] parameter, aka Edit Snippet.
CVE-2020-25872 1 Frogcms Project 1 Frogcms 2024-08-04 4.9 Medium
A vulnerability exists within the FileManagerController.php function in FrogCMS 0.9.5 which allows an attacker to perform a directory traversal attack via a GET request urlencode parameter.
CVE-2021-26794 1 Frogcms Project 1 Frogcms 2024-08-03 9.8 Critical
Privilege escalation in 'upload.php' in FrogCMS SentCMS v0.9.5 allows attacker to execute arbitrary code via crafted php file.