Vendor CVEs
chshcms
All CVEs
53 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-29660 | Cri | 0.65 | 9.8 | 0.12 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/pic/del. | ||
| CVE-2023-26781 | Cri | 0.64 | 9.8 | 0.01 | Apr 28, 2023 | SQL injection vulnerability in mccms 2.6 allows remote attackers to run arbitrary SQL commands via Author Center ->Reader Comments ->Search. | ||
| CVE-2020-28103 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2022 | cscms v4.1 allows for SQL injection via the "page_del" function. | ||
| CVE-2020-28102 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2022 | cscms v4.1 allows for SQL injection via the "js_del" function. | ||
| CVE-2020-21238 | Cri | 0.64 | 9.8 | 0.01 | Dec 27, 2021 | An issue in the user login box of CSCMS v4.0 allows attackers to hijack user accounts via brute force attacks. | ||
| CVE-2020-22848 | Cri | 0.64 | 9.8 | 0.03 | Aug 30, 2021 | A remote code execution (RCE) vulnerability in the \Playsong.php component of cscms v4.1 allows attackers to execute arbitrary commands. | ||
| CVE-2018-17126 | Cri | 0.64 | 9.8 | 0.03 | Sep 17, 2018 | CScms 4.1 allows remote code execution, as demonstrated by 1');eval($_POST[cmd]);# in Web Name to upload\plugins\sys\Install.php. | ||
| CVE-2018-16731 | Cri | 0.64 | 9.8 | 0.01 | Sep 8, 2018 | CScms 4.1 allows arbitrary file upload by (for example) adding the php extension to the default filetype list (gif, jpg, png), and then providing a .php pathname within fileurl JSON data. | ||
| CVE-2023-29815 | Hig | 0.57 | 8.8 | 0.00 | Apr 28, 2023 | mccms v2.6.3 is vulnerable to Cross Site Request Forgery (CSRF). | ||
| CVE-2022-29685 | Hig | 0.57 | 8.8 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/User/level_sort. | ||
| CVE-2022-29669 | Hig | 0.57 | 8.8 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/lists/zhuan. | ||
| CVE-2022-29667 | Hig | 0.57 | 8.8 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via /admin.php/pic/admin/pic/hy. This vulnerability is exploited via restoring deleted photos. | ||
| CVE-2022-29664 | Hig | 0.57 | 8.8 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/pl_save. | ||
| CVE-2022-28552 | Hig | 0.57 | 8.8 | 0.01 | May 4, 2022 | Cscms 4.1 is vulnerable to SQL Injection. Log into the background, open the song module, create a new song, delete it to the recycle bin, and SQL injection security problems will occur when emptying the recycle bin. | ||
| CVE-2018-16732 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2018 | \upload\plugins\sys\admin\Setting.php in CScms 4.1 allows CSRF via admin.php/setting/ftp_save. | ||
| CVE-2018-16448 | Hig | 0.57 | 8.8 | 0.00 | Sep 4, 2018 | Cscms 4 allows CSRF for creating a member via upload/admin.php/user/save, authenticating vip members via upload/admin.php/user/init/tid and upload/admin.php/user/init/rzid, and creating a super administrator and web editor via upload/admin.php/sys/save. | ||
| CVE-2019-6779 | Hig | 0.53 | 8.1 | 0.00 | Jan 24, 2019 | Cscms 4.1.8 allows admin.php/links/save CSRF to add, modify, or delete friend links. | ||
| CVE-2018-17125 | Hig | 0.49 | 7.5 | 0.01 | Sep 17, 2018 | CScms 4.1 allows arbitrary directory deletion via a dir=..\\ substring to plugins\sys\admin\Plugins.php. | ||
| CVE-2022-29689 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/singer/del. | ||
| CVE-2022-29688 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/singer/hy. | ||
| CVE-2022-29687 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/user/level_del. | ||
| CVE-2022-29686 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/lists/zhuan. | ||
| CVE-2022-29684 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Label/js_del. | ||
| CVE-2022-29683 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Label/page_del. | ||
| CVE-2022-29682 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/vod/admin/topic/del. | ||
| CVE-2022-29681 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Links/del. | ||
| CVE-2022-29680 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/user/zu_del. | ||
| CVE-2022-29676 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/lists/zhuan. | ||
| CVE-2022-29670 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/del. | ||
| CVE-2022-29666 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/lists/zhuan. | ||
| CVE-2022-29665 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/topic/save. | ||
| CVE-2022-29663 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/hy. | ||
| CVE-2022-29662 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/news/save. | ||
| CVE-2022-29661 | Hig | 0.47 | 7.2 | 0.01 | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/save. | ||
| CVE-2022-27369 | Hig | 0.47 | 7.2 | 0.01 | Apr 15, 2022 | Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component news_News.php_hy. | ||
| CVE-2022-27368 | Hig | 0.47 | 7.2 | 0.01 | Apr 15, 2022 | Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Lists.php_zhuan. | ||
| CVE-2022-27367 | Hig | 0.47 | 7.2 | 0.01 | Apr 15, 2022 | Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Topic.php_del. | ||
| CVE-2022-27366 | Hig | 0.47 | 7.2 | 0.01 | Apr 15, 2022 | Cscms Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the component dance_Dance.php_hy. | ||
| CVE-2022-27365 | Hig | 0.47 | 7.2 | 0.01 | Apr 15, 2022 | Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Dance.php_del. | ||
| CVE-2025-50234 | Med | 0.42 | 6.5 | 0.00 | Aug 6, 2025 | MCCMS v2.7.0 has an SSRF vulnerability located in the index() method of the sys\apps\controllers\api\Gf.php file, where the pic parameter is processed. The pic parameter is decrypted using the sys_auth($pic, 1) function, which utilizes a hard-coded key Mc_Encryption_Key… | ||
| CVE-2023-26782 | Med | 0.42 | 6.5 | 0.01 | Apr 28, 2023 | An issue discovered in mccms 2.6.1 allows remote attackers to cause a denial of service via Backend management interface ->System Configuration->Cache Configuration->Cache security characters. | ||
| CVE-2022-30898 | Med | 0.42 | 6.5 | 0.01 | Jun 9, 2022 | A Cross-site request forgery (CSRF) vulnerability in Cscms music portal system v4.2 allows remote attackers to change the administrator's username and password. | ||
| CVE-2019-9598 | Med | 0.42 | 6.5 | 0.01 | Mar 7, 2019 | An issue was discovered in Cscms 4.1.0. There is an admin.php/pay CSRF vulnerability that can change the payment account to redirect funds. | ||
| CVE-2018-16337 | Med | 0.42 | 6.5 | 0.00 | Sep 2, 2018 | An issue was discovered in Cscms V4.1.8. There is a CSRF vulnerability that can modify a website's basic configuration via upload/admin.php/setting/save. | ||
| CVE-2025-5327 | Med | 0.41 | 6.3 | 0.01 | May 29, 2025 | A vulnerability was found in chshcms mccms 2.7. It has been classified as critical. This affects the function index of the file sys/apps/controllers/api/Gf.php. The manipulation of the argument pic leads to server-side request forgery. It is possible to initiate the attack… | ||
| CVE-2023-3236 | Med | 0.41 | 6.3 | 0.01 | Jun 14, 2023 | A vulnerability classified as critical has been found in mccms up to 2.6.5. This affects the function pic_save of the file sys/apps/controllers/admin/Comic.php. The manipulation of the argument pic leads to server-side request forgery. It is possible to initiate the attack… | ||
| CVE-2023-3235 | Med | 0.41 | 6.3 | 0.01 | Jun 14, 2023 | A vulnerability was found in mccms up to 2.6.5. It has been rated as critical. Affected by this issue is the function pic_api of the file sys/apps/controllers/admin/Comic.php. The manipulation of the argument url leads to server-side request forgery. The attack may be launched… | ||
| CVE-2018-16730 | Med | 0.40 | 6.1 | 0.01 | Sep 8, 2018 | \upload\plugins\sys\Install.php in CScms 4.1 has XSS via the site name. | ||
| CVE-2025-51651 | Med | 0.36 | 5.5 | 0.00 | Jul 14, 2025 | An authenticated arbitrary file download vulnerability in the component /admin/Backups.php of Mccms v2.7.0 allows attackers to download arbitrary files via a crafted GET request. | ||
| CVE-2023-5029 | Med | 0.36 | 5.5 | 0.01 | Sep 17, 2023 | A vulnerability, which was classified as critical, was found in mccms 2.6. This affects an unknown part of the file /category/order/hits/copyright/46/finish/1/list/1. The manipulation with the input '"1 leads to sql injection. The exploit has been disclosed to the public and may… |
- risk 0.65cvss 9.8epss 0.12
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/pic/del.
- risk 0.64cvss 9.8epss 0.01
SQL injection vulnerability in mccms 2.6 allows remote attackers to run arbitrary SQL commands via Author Center ->Reader Comments ->Search.
- risk 0.64cvss 9.8epss 0.01
cscms v4.1 allows for SQL injection via the "page_del" function.
- risk 0.64cvss 9.8epss 0.01
cscms v4.1 allows for SQL injection via the "js_del" function.
- risk 0.64cvss 9.8epss 0.01
An issue in the user login box of CSCMS v4.0 allows attackers to hijack user accounts via brute force attacks.
- risk 0.64cvss 9.8epss 0.03
A remote code execution (RCE) vulnerability in the \Playsong.php component of cscms v4.1 allows attackers to execute arbitrary commands.
- risk 0.64cvss 9.8epss 0.03
CScms 4.1 allows remote code execution, as demonstrated by 1');eval($_POST[cmd]);# in Web Name to upload\plugins\sys\Install.php.
- risk 0.64cvss 9.8epss 0.01
CScms 4.1 allows arbitrary file upload by (for example) adding the php extension to the default filetype list (gif, jpg, png), and then providing a .php pathname within fileurl JSON data.
- risk 0.57cvss 8.8epss 0.00
mccms v2.6.3 is vulnerable to Cross Site Request Forgery (CSRF).
- risk 0.57cvss 8.8epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/User/level_sort.
- risk 0.57cvss 8.8epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/lists/zhuan.
- risk 0.57cvss 8.8epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via /admin.php/pic/admin/pic/hy. This vulnerability is exploited via restoring deleted photos.
- risk 0.57cvss 8.8epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/pl_save.
- risk 0.57cvss 8.8epss 0.01
Cscms 4.1 is vulnerable to SQL Injection. Log into the background, open the song module, create a new song, delete it to the recycle bin, and SQL injection security problems will occur when emptying the recycle bin.
- risk 0.57cvss 8.8epss 0.01
\upload\plugins\sys\admin\Setting.php in CScms 4.1 allows CSRF via admin.php/setting/ftp_save.
- risk 0.57cvss 8.8epss 0.00
Cscms 4 allows CSRF for creating a member via upload/admin.php/user/save, authenticating vip members via upload/admin.php/user/init/tid and upload/admin.php/user/init/rzid, and creating a super administrator and web editor via upload/admin.php/sys/save.
- risk 0.53cvss 8.1epss 0.00
Cscms 4.1.8 allows admin.php/links/save CSRF to add, modify, or delete friend links.
- risk 0.49cvss 7.5epss 0.01
CScms 4.1 allows arbitrary directory deletion via a dir=..\\ substring to plugins\sys\admin\Plugins.php.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/singer/del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/singer/hy.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/user/level_del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/lists/zhuan.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Label/js_del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Label/page_del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/vod/admin/topic/del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Links/del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/user/zu_del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/lists/zhuan.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/del.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/lists/zhuan.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/topic/save.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/hy.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/news/save.
- risk 0.47cvss 7.2epss 0.01
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/save.
- risk 0.47cvss 7.2epss 0.01
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component news_News.php_hy.
- risk 0.47cvss 7.2epss 0.01
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Lists.php_zhuan.
- risk 0.47cvss 7.2epss 0.01
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Topic.php_del.
- risk 0.47cvss 7.2epss 0.01
Cscms Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the component dance_Dance.php_hy.
- risk 0.47cvss 7.2epss 0.01
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Dance.php_del.
- risk 0.42cvss 6.5epss 0.00
MCCMS v2.7.0 has an SSRF vulnerability located in the index() method of the sys\apps\controllers\api\Gf.php file, where the pic parameter is processed. The pic parameter is decrypted using the sys_auth($pic, 1) function, which utilizes a hard-coded key Mc_Encryption_Key…
- risk 0.42cvss 6.5epss 0.01
An issue discovered in mccms 2.6.1 allows remote attackers to cause a denial of service via Backend management interface ->System Configuration->Cache Configuration->Cache security characters.
- risk 0.42cvss 6.5epss 0.01
A Cross-site request forgery (CSRF) vulnerability in Cscms music portal system v4.2 allows remote attackers to change the administrator's username and password.
- risk 0.42cvss 6.5epss 0.01
An issue was discovered in Cscms 4.1.0. There is an admin.php/pay CSRF vulnerability that can change the payment account to redirect funds.
- risk 0.42cvss 6.5epss 0.00
An issue was discovered in Cscms V4.1.8. There is a CSRF vulnerability that can modify a website's basic configuration via upload/admin.php/setting/save.
- risk 0.41cvss 6.3epss 0.01
A vulnerability was found in chshcms mccms 2.7. It has been classified as critical. This affects the function index of the file sys/apps/controllers/api/Gf.php. The manipulation of the argument pic leads to server-side request forgery. It is possible to initiate the attack…
- risk 0.41cvss 6.3epss 0.01
A vulnerability classified as critical has been found in mccms up to 2.6.5. This affects the function pic_save of the file sys/apps/controllers/admin/Comic.php. The manipulation of the argument pic leads to server-side request forgery. It is possible to initiate the attack…
- risk 0.41cvss 6.3epss 0.01
A vulnerability was found in mccms up to 2.6.5. It has been rated as critical. Affected by this issue is the function pic_api of the file sys/apps/controllers/admin/Comic.php. The manipulation of the argument url leads to server-side request forgery. The attack may be launched…
- risk 0.40cvss 6.1epss 0.01
\upload\plugins\sys\Install.php in CScms 4.1 has XSS via the site name.
- risk 0.36cvss 5.5epss 0.00
An authenticated arbitrary file download vulnerability in the component /admin/Backups.php of Mccms v2.7.0 allows attackers to download arbitrary files via a crafted GET request.
- risk 0.36cvss 5.5epss 0.01
A vulnerability, which was classified as critical, was found in mccms 2.6. This affects an unknown part of the file /category/order/hits/copyright/46/finish/1/list/1. The manipulation with the input '"1 leads to sql injection. The exploit has been disclosed to the public and may…
Page 1 of 2