Skip to content
Noroxi

ddsn records

12 published records for vendor ddsn.

All records

12 records
  • A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the

    CriticalCVSS 10.0Proof of conceptEPSS 0%

    ddsn · cm3 acora cmsJan 12, 2026

  • Acora CMS version 10.1.1 is vulnerable to Cross-Site Request Forgery (CSRF).

    HighCVSS 8.8Proof of conceptEPSS 1%

    ddsn · acora cmsMar 3, 2025

  • DDSN Interactive cm3 Acora CMS version 10.1.1 has an unauthenticated time-based blind SQL Injection vulnerability caused by insufficient inp

    HighCVSS 8.1Proof of conceptEPSS 1%

    ddsn · cm3 acora content management systemJan 15, 2025

  • CVE-2006-0221
    30Monitor

    SQL injection vulnerability in index.asp in the Admin Panel in Dragon Design Services Network (DDSN) cm3 content manager (CM3CMS) allows rem

    HighCVSS 7.5No exploitEPSS 1%

    ddsn · cm3cmsJan 16, 2006

  • CVE-2013-4726
    27Monitor

    Cross-site request forgery (CSRF) vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly o

    MediumCVSS 6.8No exploitEPSS 1%

    ddsn · cm3 acora content management systemApr 25, 2014

  • CVE-2013-4723
    24Monitor

    Open redirect vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions allows

    MediumCVSS 5.8No exploitEPSS 2%

    ddsn · cm3 acora content management systemApr 25, 2014

  • DDSN Interactive cm3 Acora CMS version 10.1.1 contains an improper access control vulnerability.

    MediumCVSS 6.0Proof of conceptEPSS 1%

    ddsn · cm3 acora content management systemFeb 20, 2025

  • CVE-2013-4727
    21Monitor

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, allows remote attackers to obtain se

    MediumCVSS 5.0Proof of conceptEPSS 3%

    ddsn · cm3 acora content management systemJun 6, 2014

  • CVE-2013-4725
    20Monitor

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not set the secure flag for an

    MediumCVSS 5.0No exploitEPSS 1%

    ddsn · cm3 acora content management systemJun 6, 2014

  • CVE-2013-4728
    20Monitor

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, allows remote attackers to obtain se

    MediumCVSS 5.0No exploitEPSS 1%

    ddsn · cm3 acora content management systemJun 6, 2014

  • CVE-2013-4724
    20Monitor

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not include the HTTPOnly flag i

    MediumCVSS 5.0No exploitEPSS 1%

    ddsn · cm3 acora content management systemJun 6, 2014

  • CVE-2013-4722
    18Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in Admin/login/default.asp in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/1

    MediumCVSS 4.3No exploitEPSS 2%

    ddsn · cm3 acora content management systemApr 25, 2014