Classcms
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-45966 | Cri | 0.64 | 9.8 | 0.01 | Dec 22, 2022 | here is an arbitrary file upload vulnerability in the file management function module of Classcms3.5. | ||
| CVE-2022-25582 | Med | 0.35 | 5.4 | 0.01 | Mar 25, 2022 | A stored cross-site scripting (XSS) vulnerability in the Column module of ClassCMS v2.5 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Add Articles field. | ||
| CVE-2024-6932 | Low | 0.23 | 3.5 | 0.00 | Jul 20, 2024 | A vulnerability was found in ClassCMS 4.5. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/?action=home&do=shop:index&keyword=&kind=all. The manipulation of the argument order leads to cross site scripting. The… |
- risk 0.64cvss 9.8epss 0.01
here is an arbitrary file upload vulnerability in the file management function module of Classcms3.5.
- risk 0.35cvss 5.4epss 0.01
A stored cross-site scripting (XSS) vulnerability in the Column module of ClassCMS v2.5 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Add Articles field.
- risk 0.23cvss 3.5epss 0.00
A vulnerability was found in ClassCMS 4.5. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/?action=home&do=shop:index&keyword=&kind=all. The manipulation of the argument order leads to cross site scripting. The…