İçeriğe atla
Noroxi

clippercms kayıtları

clippercms üreticisine ait 10 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

10 kayıt
  • CVE-2022-41495
    39İzleyin

    ClipperCMS 1.3.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the rss_url_news parameter at /manager/index.php.

    KritikCVSS 9,8İstismar yokEPSS %1

    clippercms · clippercms13 Eki 2022

  • CVE-2022-41497
    39İzleyin

    ClipperCMS 1.3.3 was discovered to contain a Server-Side Request Forgery (SSRF) via the pkg_url parameter at /manager/index.php.

    KritikCVSS 9,8İstismar yokEPSS %1

    clippercms · clippercms13 Eki 2022

  • CVE-2018-19135
    36İzleyin

    ClipperCMS 1.3.3 does not have CSRF protection on its kcfinder file upload (enabled by default).

    YüksekCVSS 8,8Kavram kanıtıEPSS %3

    clippercms · clippercms11 Kas 2018

  • CVE-2018-11571
    35İzleyin

    ClipperCMS 1.3.3 allows Session Fixation.

    YüksekCVSS 8,8İstismar yokEPSS %1

    clippercms · clippercms30 May 2018

  • CVE-2018-19424
    29İzleyin

    ClipperCMS 1.3.3 allows remote authenticated administrators to upload .htaccess files.

    YüksekCVSS 7,2İstismar yokEPSS %2

    clippercms · clippercms21 Kas 2018

  • CVE-2018-12101
    21İzleyin

    CMS Clipper 1.3.3 has XSS in the Security tab search, User Groups, Resource Groups, and User/Resource Group Links fields.

    OrtaCVSS 5,4İstismar yokEPSS %1

    clippercms · clippercms15 Ağu 2019

  • CVE-2018-11572
    21İzleyin

    ClipperCMS 1.3.3 has XSS in the "Module name" field in a "Modules -> Manage modules -> edit" action to the manager/ URI.

    OrtaCVSS 5,4İstismar yokEPSS %1

    clippercms · clippercms30 May 2018

  • CVE-2018-11332
    20İzleyin

    Stored cross-site scripting (XSS) vulnerability in the "Site Name" field found in the "site" tab under configurations in ClipperCMS 1.3.3 al

    OrtaCVSS 4,8Kavram kanıtıEPSS %2

    clippercms · clippercms24 May 2018

  • CVE-2018-13998
    19İzleyin

    ClipperCMS 1.3.3 has stored XSS via the Full Name field of (1) Security -> Manager Users or (2) Security -> Web Users.

    OrtaCVSS 4,8İstismar yokEPSS %1

    clippercms · clippercms12 Tem 2018

  • CVE-2018-13106
    19İzleyin

    ClipperCMS 1.3.3 has stored XSS via the "Tools -> Configuration" screen of the manager/ URI.

    OrtaCVSS 4,8İstismar yokEPSS %1

    clippercms · clippercms3 Tem 2018