Skip to content
Noroxi

Webedition records

8 published records for vendor webedition.

All records

8 records
  • The installer script in webEdition CMS before 6.2.7-s1 and 6.3.x before 6.3.8-s1 allows remote attackers to conduct PHP Object Injection att

    CriticalCVSS 9.8No exploitEPSS 4%

    webedition · webedition cmsJul 19, 2018

  • Webedition CMS v2.9.8.8 Remote Code Execution via PHP Page Creation

    HighCVSS 8.6No exploitEPSS 1%

    webedition · webedition cmsDec 15, 2025

  • CVE-2014-2303
    31Monitor

    Multiple SQL injection vulnerabilities in the file browser component (we_fs.php) in webEdition CMS before 6.2.7-s1.2 and 6.3.x through 6.3.8

    HighCVSS 7.5Proof of conceptEPSS 3%

    webedition · webedition cmsJun 13, 2014

  • Webedition CMS 9.2.2.0 has a File upload vulnerability via /webEdition/we_cmd.php

    MediumCVSS 6.5No exploitEPSS 0%

    webedition · webedition cmsMar 14, 2024

  • Webedition CMS 9.2.2.0 has a Stored XSS vulnerability via /webEdition/we_cmd.php.

    MediumCVSS 6.3No exploitEPSS 0%

    webedition · webedition cmsMar 14, 2024

  • CVE-2014-5258
    22Monitor

    Directory traversal vulnerability in showTempFile.php in webEdition CMS before 6.3.9.0 Beta allows remote authenticated users to read arbitr

    MediumCVSS 4.0Proof of conceptEPSS 20%

    webedition · webedition cmsNov 6, 2014

  • CVE-2009-1222
    21Monitor

    Directory traversal vulnerability in index.php in webEdition 6.0.0.4 and earlier, when register_globals is enabled and magic_quotes_gpc is d

    MediumCVSS 5.1Proof of conceptEPSS 2%

    webedition · webeditionApr 2, 2009

  • Webedition CMS v2.9.8.8 Stored Cross-Site Scripting via SVG Upload

    MediumCVSS 5.1No exploitEPSS 0%

    webedition · webedition cmsDec 15, 2025