Skip to content
Noroxi

mycms records

3 published records for vendor mycms.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    Attack profile

    All records

    3 records
    • CVE-2007-3587
      31Monitor

      MyCMS 0.9.8 and earlier allows remote attackers to gain privileges via the admin cookie parameter, as demonstrated by a post to admin/settin

      HighCVSS 7.5Proof of conceptEPSS 3%

      mycms · mycmsJul 5, 2007

    • CVE-2007-3585
      31Monitor

      PHP remote file inclusion vulnerability in games.php in MyCMS 0.9.8 and earlier allows remote attackers to execute arbitrary PHP code via a

      HighCVSS 7.5Proof of conceptEPSS 2%

      mycms · mycmsJul 5, 2007

    • CVE-2007-3586
      31Monitor

      Multiple direct static code injection vulnerabilities in MyCMS 0.9.8 and earlier allow remote attackers to inject arbitrary PHP code into (1

      HighCVSS 7.5Proof of conceptEPSS 2%

      mycms · mycmsJul 5, 2007