Skip to main content

Vendor/product archive

victoralagwu / cmssite CVEs

Beta · best-effort

3 CVEs tagged to victoralagwu / cmssite0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2019-25697

Published Apr 12, 2026

CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the cat_id parameter. Attack…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-25682

Published Apr 5, 2026

CMSsite 1.0 contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized administrative actions by crafting malicious HTML forms. Attackers ca…

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2019-25674

Published Apr 5, 2026

CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'post' parameter. Attack…

CVSS 8.8 · High
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1