Skip to main content

Vendor/product archive

contenido / contendio CVEs

Beta · best-effort

5 CVEs tagged to contenido / contendio0 Critical, 2 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2014-9433

Published Dec 31, 2014

Multiple cross-site scripting (XSS) vulnerabilities in cms/front_content.php in Contenido before 4.9.6, when advanced mod rewrite (AMR) is disabled, allow remote attackers to inje…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-2911

Published Jun 30, 2008

Multiple cross-site scripting (XSS) vulnerabilities in index.php in Contenido 4.8.4 allow remote attackers to inject arbitrary web script or HTML via the (1) contenido, (2) Belang…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5380

Published Oct 18, 2006

Remote file inclusion vulnerability in Contenido CMS allows remote attackers to execute arbitrary PHP code via a URL in the contenido_path parameter to (1) cms/dbfs.php or (2) cms…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5381

Published Oct 18, 2006

Contenido CMS stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain database credentials and other information via a d…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4132

Published Dec 9, 2005

Unspecified "security leak" vulnerability in Contenido before 4.6.4, when register_globals is on and allow_url_fopen is true, has unspecified impact and attack vectors. NOTE: it…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1