VYPR
Vendor

Feehi CMS

Products
2
CVEs
6
Across products
7
Status
Private

Products

2

Recent CVEs

6
  • CVE-2022-34971HigJul 27, 2022
    risk 0.57cvss 8.8epss 0.01

    An arbitrary file upload vulnerability in the Advertising Management module of Feehi CMS v2.1.1 allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2020-21322CriSep 15, 2021
    risk 0.57cvss 9.8epss 0.02

    An arbitrary file upload vulnerability in Feehi CMS v2.0.8 and below allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2020-22643HigJan 26, 2021
    risk 0.47cvss 7.2epss 0.02

    Feehi CMS 2.1.0 is affected by an arbitrary file upload vulnerability, potentially resulting in remote code execution. After an administrator logs in, open the administrator image upload page to potentially upload malicious files.

  • CVE-2021-36572MedDec 15, 2022
    risk 0.40cvss 6.1epss 0.00

    Cross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via the user name field of the login page.

  • CVE-2021-36573MedDec 15, 2022
    risk 0.35cvss 5.4epss 0.00

    File Upload vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via crafted image upload.

  • CVE-2026-13544MedJun 29, 2026
    risk 0.00cvss 6.3epss 0.00

    A flaw has been found in Feehi CMS up to 2.1.1. Affected by this issue is some unknown functionality of the file /api/users of the component API. This manipulation causes improper access controls. The attack can be initiated remotely. The exploit has been published and may be…