Skip to content
Noroxi

flexcms records

4 published records for vendor flexcms.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

4 records
  • CVE-2009-0534
    30Monitor

    SQL injection vulnerability in FlexCMS allows remote attackers to execute arbitrary SQL commands via the catId parameter.

    HighCVSS 7.5Proof of conceptEPSS 1%

    flexcms · flexcmsFeb 11, 2009

  • CVE-2009-1256
    30Monitor

    SQL injection vulnerability in FlexCMS 2.5 allows remote attackers to execute arbitrary SQL commands via the ItemId parameter.

    HighCVSS 7.5Proof of conceptEPSS 1%

    flexcms · flexcmsApr 7, 2009

  • CVE-2012-1901
    27Monitor

    Multiple cross-site request forgery (CSRF) vulnerabilities in FlexCMS 3.2.1 and earlier allow remote attackers to (1) hijack the authenticat

    MediumCVSS 6.8Proof of conceptEPSS 1%

    flexcms · flexcmsSep 18, 2012

  • CVE-2008-3715
    10Monitor

    Cross-site scripting (XSS) vulnerability in inc-core-admin-editor-previouscolorsjs.php in the FlexCMS 2.5 and earlier, when register_globals

    LowCVSS 2.6Proof of conceptEPSS 2%

    flexcms · flexcmsAug 19, 2008