Skip to content
Noroxi

livecms records

4 published records for vendor livecms.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    4 records
    • CVE-2007-3290
      38Monitor

      categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a ' (quote) character in the cid parame

      CriticalCVSS 9.3Proof of conceptEPSS 3%

      livecms · livecmsJun 20, 2007

    • CVE-2007-3292
      31Monitor

      Unrestricted file upload vulnerability in LiveCMS 3.4 and earlier allows remote attackers to upload and execute arbitrary PHP code by specif

      HighCVSS 7.5Proof of conceptEPSS 2%

      livecms · livecmsJun 20, 2007

    • CVE-2007-3293
      30Monitor

      SQL injection vulnerability in categoria.php in LiveCMS 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the ci

      HighCVSS 7.5Proof of conceptEPSS 1%

      livecms · livecmsJun 20, 2007

    • CVE-2007-3291
      17Monitor

      Cross-site scripting (XSS) vulnerability in LiveCMS 3.4 and earlier allows remote attackers to inject arbitrary web script or HTML via an ar

      MediumCVSS 4.3Proof of conceptEPSS 2%

      livecms · livecmsJun 20, 2007