Filtered by vendor Jeecms
Subscriptions
Filtered by product Jeecms
Subscriptions
Total
5 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2018-20528 | 1 Jeecms | 1 Jeecms | 2024-09-17 | N/A |
JEECMS 9 has SSRF via the ueditor/getRemoteImage.jspx upfile parameter. | ||||
CVE-2018-18952 | 1 Jeecms | 1 Jeecms | 2024-09-16 | N/A |
JEECMS 9.3 has XSS via an index.do#/content/update?type=update URI. | ||||
CVE-2018-19544 | 1 Jeecms | 1 Jeecms | 2024-08-05 | N/A |
JEECMS 9.3 has CSRF via the api/admin/content/save URI to add news. | ||||
CVE-2018-19545 | 1 Jeecms | 1 Jeecms | 2024-08-05 | N/A |
JEECMS 9.3 has CSRF via the api/admin/role/save URI to add a user. | ||||
CVE-2020-20799 | 1 Jeecms | 1 Jeecms | 2024-08-04 | 5.4 Medium |
JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the commentText parameter. |
Page 1 of 1.