Filtered by vendor Boidcms Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-48824 1 Boidcms 1 Boidcms 2024-08-02 5.4 Medium
BoidCMS 2.0.1 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) issues via the title, subtitle, footer, or keywords parameter in a page=create action.
CVE-2023-38836 1 Boidcms 1 Boidcms 2024-08-02 8.8 High
File Upload vulnerability in BoidCMS v.2.0.0 allows a remote attacker to execute arbitrary code by adding a GIF header to bypass MIME type checks.
CVE-2024-32342 1 Boidcms 1 Boidcms 2024-08-02 6.1 Medium
A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Permalink parameter.
CVE-2024-32343 1 Boidcms 1 Boidcms 2024-08-02 6.1 Medium
A cross-site scripting (XSS) vulnerability in the Create Page of Boid CMS v2.1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Content parameter.