Semcms
by Sem CMS
CVEs (53)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-18078 | 0.00 | — | 0.01 | Dec 17, 2021 | A vulnerability in /include/web_check.php of SEMCMS v3.8 allows attackers to reset the Administrator account's password. | |||
| CVE-2019-11518 | 0.00 | — | 0.01 | Apr 25, 2019 | An issue was discovered in SEMCMS 3.8. SEMCMS_Inquiry.php allows AID[] SQL Injection because the class.phpmailer.php inject_check_sql protection mechanism is incomplete. | |||
| CVE-2018-20017 | 0.00 | — | 0.01 | Dec 10, 2018 | SEMCMS 3.5 has XSS via the first text box to the SEMCMS_Main.php URI. | |||
| CVE-2018-18841 | 0.00 | — | 0.01 | Oct 30, 2018 | XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexkey parameter. | |||
| CVE-2018-18840 | 0.00 | — | 0.01 | Oct 30, 2018 | XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexmetatit parameter. | |||
| CVE-2018-18783 | 0.00 | — | 0.01 | Oct 29, 2018 | XSS was discovered in SEMCMS V3.4 via the semcms_remail.php?type=ok umail parameter. | |||
| CVE-2018-18742 | 0.00 | — | 0.01 | Oct 28, 2018 | A CSRF issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_User.php?Class=add&CF=user URI. | |||
| CVE-2018-18744 | 0.00 | — | 0.01 | Oct 28, 2018 | An XSS issue was discovered in SEMCMS 3.4 via the fifth text box to the admin/SEMCMS_Main.php URI. | |||
| CVE-2018-18741 | 0.00 | — | 0.01 | Oct 28, 2018 | An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Download.php?lgid=1 during editing. | |||
| CVE-2018-18739 | 0.00 | — | 0.01 | Oct 28, 2018 | An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Products.php?lgid=1 Keywords field. | |||
| CVE-2018-18740 | 0.00 | — | 0.01 | Oct 28, 2018 | An XSS issue was discovered in SEMCMS 3.4 via the first input field to the admin/SEMCMS_Link.php?lgid=1 URI. | |||
| CVE-2018-18738 | 0.00 | — | 0.01 | Oct 28, 2018 | An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Categories.php?pid=1&lgid=1 category_key parameter. | |||
| CVE-2018-18745 | 0.00 | — | 0.01 | Oct 28, 2018 | An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Menu.php?lgid=1 during editing. |
- CVE-2020-18078Dec 17, 2021risk 0.00cvss —epss 0.01
A vulnerability in /include/web_check.php of SEMCMS v3.8 allows attackers to reset the Administrator account's password.
- CVE-2019-11518Apr 25, 2019risk 0.00cvss —epss 0.01
An issue was discovered in SEMCMS 3.8. SEMCMS_Inquiry.php allows AID[] SQL Injection because the class.phpmailer.php inject_check_sql protection mechanism is incomplete.
- CVE-2018-20017Dec 10, 2018risk 0.00cvss —epss 0.01
SEMCMS 3.5 has XSS via the first text box to the SEMCMS_Main.php URI.
- CVE-2018-18841Oct 30, 2018risk 0.00cvss —epss 0.01
XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexkey parameter.
- CVE-2018-18840Oct 30, 2018risk 0.00cvss —epss 0.01
XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexmetatit parameter.
- CVE-2018-18783Oct 29, 2018risk 0.00cvss —epss 0.01
XSS was discovered in SEMCMS V3.4 via the semcms_remail.php?type=ok umail parameter.
- CVE-2018-18742Oct 28, 2018risk 0.00cvss —epss 0.01
A CSRF issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_User.php?Class=add&CF=user URI.
- CVE-2018-18744Oct 28, 2018risk 0.00cvss —epss 0.01
An XSS issue was discovered in SEMCMS 3.4 via the fifth text box to the admin/SEMCMS_Main.php URI.
- CVE-2018-18741Oct 28, 2018risk 0.00cvss —epss 0.01
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Download.php?lgid=1 during editing.
- CVE-2018-18739Oct 28, 2018risk 0.00cvss —epss 0.01
An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Products.php?lgid=1 Keywords field.
- CVE-2018-18740Oct 28, 2018risk 0.00cvss —epss 0.01
An XSS issue was discovered in SEMCMS 3.4 via the first input field to the admin/SEMCMS_Link.php?lgid=1 URI.
- CVE-2018-18738Oct 28, 2018risk 0.00cvss —epss 0.01
An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Categories.php?pid=1&lgid=1 category_key parameter.
- CVE-2018-18745Oct 28, 2018risk 0.00cvss —epss 0.01
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Menu.php?lgid=1 during editing.
Page 3 of 3