NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87860  CVE-2017-11414  Fiyo CMS 2.0.7 has SQL injection in dapur/apps/app_comment/sys_comment.php via $_POST['comment'], $_POST['name'], $_POST['web'], $_POST['email'], $_POST['status'], $_POST['id'], and $_REQUEST['id'].          2017-07-18  2017-07-18  View
87859  CVE-2017-11413  Fiyo CMS 2.0.7 has SQL injection in dapur/apps/app_article/controller/comment_status.php via $_GET['id'].          2017-07-18  2017-07-18  View
87858  CVE-2017-11412  Fiyo CMS 2.0.7 has SQL injection in dapur/apps/app_comment/controller/comment_status.php via $_GET['id'].          2017-07-18  2017-07-18  View
87857  CVE-2017-11405  In CMS Made Simple (CMSMS) 2.2.2, remote authenticated administrators can upload a .php file via a CMSContentManager action to admin/moduleinterface.php, followed by a FilePicker action to admin/moduleinterface.php in which type=image is changed to type=file.          2017-07-18  2017-07-17  View
87856  CVE-2017-11404  In CMS Made Simple (CMSMS) 2.2.2, remote authenticated administrators can upload a .php file via a FileManager action to admin/moduleinterface.php.          2017-07-18  2017-07-17  View

Page 101 of 17672, showing 5 records out of 88360 total, starting on record 501, ending on 505

Actions