Skip to main content

Vendor/product archive

gpeasy / gpeasy_cms CVEs

Beta · best-effort

4 CVEs tagged to gpeasy / gpeasy_cms0 Critical, 0 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2013-0807

Published Mar 28, 2014

Cross-site scripting (XSS) vulnerability in the NewSectionPrompt function in include/tool/editing_page.php in gpEasy CMS 3.5.2 and earlier allows remote attackers to inject arbitr…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-6513

Published Jan 24, 2013

Cross-site scripting (XSS) vulnerability in index.php/Admin_Preferences in gpEasy CMS 2.3.3 allows remote attackers to inject arbitrary web script or HTML via the jsoncallback par…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-2039

Published May 25, 2010

Cross-site request forgery (CSRF) vulnerability in gpEasy CMS 1.6.2, 1.6.1, and earlier allows remote attackers to hijack the authentication of administrators for requests that cr…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-2038

Published May 25, 2010

Cross-site scripting (XSS) vulnerability in include/tool/editing_files.php in gpEasy CMS 1.6.2 allows remote authenticated users, with Edit privileges, to inject arbitrary web scr…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1