Skip to content
Noroxi

cmscout records

7 published records for vendor cmscout.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

7 records
  • CVE-2008-3415
    31Monitor

    Directory traversal vulnerability in common.php in CMScout 2.05, when .htaccess is not supported, allows remote attackers to include and exe

    HighCVSS 7.5Proof of conceptEPSS 3%

    cmscout · cmscoutJul 31, 2008

  • CVE-2010-5059
    31Monitor

    SQL injection vulnerability in index.php in CMScout 2.0.8 allows remote attackers to execute arbitrary SQL commands via the album parameter

    HighCVSS 7.5Proof of conceptEPSS 2%

    cmscout · cmscoutNov 22, 2011

  • CVE-2007-3812
    30Monitor

    SQL injection vulnerability in forums.php in CMScout 1.23 and earlier allows remote attackers to execute arbitrary SQL commands via the f pa

    HighCVSS 7.5Proof of conceptEPSS 1%

    cmscout · cmscoutJul 16, 2007

  • CVE-2006-2188
    28Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in CMScout 1.10 and earlier allow remote attackers to inject arbitrary web script or HTM

    MediumCVSS 6.8No exploitEPSS 3%

    cmscout · cmscoutMay 4, 2006

  • CVE-2008-6726
    25Monitor

    Multiple directory traversal vulnerabilities in CMScout 2.06, when register_globals is enabled, allow remote attackers to include and execut

    MediumCVSS 6.0Proof of conceptEPSS 2%

    cmscout · cmscoutApr 17, 2009

  • CVE-2008-6725
    24Monitor

    Multiple SQL injection vulnerabilities in CMScout 2.06 allow remote authenticated users to execute arbitrary SQL commands via the id paramet

    MediumCVSS 6.0Proof of conceptEPSS 1%

    cmscout · cmscoutApr 17, 2009

  • CVE-2010-2154
    18Monitor

    Cross-site scripting (XSS) vulnerability in the Search Site in CMScout 2.09, and possibly other versions, allows remote attackers to inject

    MediumCVSS 4.3Proof of conceptEPSS 3%

    cmscout · cmscoutJun 3, 2010