Filtered by vendor Fangfa Subscriptions
Filtered by product Fdcms Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-17048 1 Fangfa 1 Fdcms 2024-08-05 N/A
admin/Lib/Action/FpluginAction.class.php in FDCMS (aka Fangfa Content Manage System) 4.2 allows SQL Injection.
CVE-2020-35442 1 Fangfa 1 Fdcms 2024-08-04 9.8 Critical
FDCMS (also known as Fangfa Content Management System) 4.0 allows remote attackers to get a webshell in the background via Front/lib/Action/FindexAction.class.php.
CVE-2020-35441 1 Fangfa 1 Fdcms 2024-08-04 9.8 Critical
FDCMS (aka Fangfa Content Management System) 4.0 contains a front-end SQL injection via Admin/Lib/Action/FloginAction.class.php.