VYPR

Company Website CMS

by Company Website CMS Project

CVEs (6)

  • CVE-2022-2765MedAug 11, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Company Website CMS 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /dashboard/settings. The manipulation leads to improper authentication. The attack can be launched…

  • CVE-2022-2751MedAug 11, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Company Website CMS and classified as critical. Affected by this issue is some unknown functionality of the file /dashboard/add-portfolio.php. The manipulation of the argument ufile leads to unrestricted upload. The attack may be…

  • CVE-2022-2750MedAug 11, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability, which was classified as critical, was found in SourceCodester Company Website CMS. Affected is an unknown function of the file /dashboard/add-service.php of the component Add Service Handler. The manipulation leads to unrestricted upload. It is possible to…

  • CVE-2022-2736MedAug 11, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Company Website CMS. It has been classified as critical. This affects an unknown part of the file /dashboard/updatelogo.php of the component Background Upload Logo Icon. The manipulation of the argument xfile/ufile leads to…

  • CVE-2023-5919MedNov 2, 2023
    risk 0.31cvss 4.7epss 0.01

    A vulnerability was found in SourceCodester Company Website CMS 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /dashboard/createblog of the component Create Blog Page. The manipulation leads to unrestricted upload. The attack…

  • CVE-2022-2725LowAug 9, 2022
    risk 0.23cvss 3.5epss 0.00

    A vulnerability was found in SourceCodester Company Website CMS. It has been rated as problematic. Affected by this issue is some unknown functionality of the file add-blog.php. The manipulation leads to cross site scripting. The attack may be launched remotely. VDB-205838 is…