VYPR

mozilo2.0

by Mozilo

CVEs (2)

  • CVE-2022-23357CriFeb 3, 2022
    risk 0.61cvss 9.1epss 0.20

    mozilo2.0 was discovered to be vulnerable to directory traversal attacks via the parameter curent_dir.

  • CVE-2020-25394MedJul 9, 2021
    risk 0.35cvss 5.4epss 0.00

    A stored cross site scripting (XSS) vulnerability in moziloCMS 2.0 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Content" parameter.