Skip to content
Noroxi

devalcms records

3 published records for vendor devalcms.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

3 records
  • CVE-2008-6983
    32Monitor

    modules/tool/hitcounter.php in devalcms 1.4a allows remote attackers to execute arbitrary PHP code via the HTTP Referer header with a target

    HighCVSS 7.5Proof of conceptEPSS 6%

    devalcms · devalcmsAug 19, 2009

  • CVE-2008-2913
    28Monitor

    Directory traversal vulnerability in func.php in Devalcms 1.4a, when magic_quotes_gpc is disabled, allows remote attackers to include and ex

    MediumCVSS 6.8Proof of conceptEPSS 2%

    devalcms · devalcmsJun 30, 2008

  • CVE-2008-6982
    19Monitor

    Cross-site scripting (XSS) vulnerability in index.php in devalcms 1.4a allows remote attackers to inject arbitrary web script or HTML via th

    MediumCVSS 4.3Proof of conceptEPSS 6%

    devalcms · devalcmsAug 19, 2009