Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Elite_cms
(Elitecms)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 17 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-01-11 | CVE-2022-40361 | Cross Site Scripting Vulnerability in Elite CRM v1.2.11 allows attacker to execute arbitrary code via the language parameter to the /ngs/login endpoint. | Elite_cms | 6.1 | ||
2023-09-20 | CVE-2023-42331 | A file upload vulnerability in EliteCMS v1.01 allows a remote attacker to execute arbitrary code via the manage_uploads.php component. | Elite_cms | 8.8 | ||
2022-06-02 | CVE-2022-30804 | elitecms v1.01 is vulnerable to Delete any file via /admin/delete_image.php?file=. | Elite_cms | 6.5 | ||
2022-06-02 | CVE-2022-30808 | elitecms 1.0.1 is vulnerable to Arbitrary code execution via admin/manage_uploads.php. | Elite_cms | 9.8 | ||
2022-06-02 | CVE-2022-30809 | elitecms 1.01 is vulnerable to SQL Injection via /admin/edit_page.php?page=. | Elite_cms | 9.8 | ||
2022-06-02 | CVE-2022-30810 | elitecms v1.01 is vulnerable to SQL Injection via admin/edit_post.php. | Elite_cms | 9.8 | ||
2022-06-02 | CVE-2022-30813 | elitecms 1.01 is vulnerable to SQL Injection via /admin/add_post.php. | Elite_cms | 9.8 |