RSS   Vulnerabilities for 'Elite cms'   RSS

2022-06-02
 
CVE-2022-30804

CWE-269
 

 
elitecms v1.01 is vulnerable to Delete any file via /admin/delete_image.php?file=.

 
 
CVE-2022-30808

CWE-434
 

 
elitecms 1.0.1 is vulnerable to Arbitrary code execution via admin/manage_uploads.php.

 
 
CVE-2022-30809

CWE-89
 

 
elitecms 1.01 is vulnerable to SQL Injection via /admin/edit_page.php?page=.

 
 
CVE-2022-30810

CWE-89
 

 
elitecms v1.01 is vulnerable to SQL Injection via admin/edit_post.php.

 
 
CVE-2022-30813

CWE-89
 

 
elitecms 1.01 is vulnerable to SQL Injection via /admin/add_post.php.

 
 
CVE-2022-30814

CWE-89
 

 
elitecms v1.01 is vulnerable to SQL Injection via /admin/add_sidebar.php.

 
 
CVE-2022-30815

CWE-89
 

 
elitecms 1.01 is vulnerable to SQL Injection via admin/edit_sidebar.php?page=2&sidebar=

 
 
CVE-2022-30816

CWE-89
 

 
elitecms 1.01 is vulnerable to SQL Injection via /admin/edit_sidebar.php.

 
2022-02-01
 
CVE-2021-46093

CWE-276
 

 
eliteCMS v1.0 is vulnerable to Insecure Permissions via manage_uploads.php.

 
 
CVE-2022-24218

NVD-CWE-noinfo
 

 
An issue in /admin/delete_image.php of eliteCMS v1.0 allows attackers to delete arbitrary files.

 


Copyright 2024, cxsecurity.com

 

Back to Top