Перейти к содержимому
Noroxi

Записи foxcms

15 опубликованных записей вендора foxcms.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
6
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

15 записей
  • CVE-2025-29306
    53В плане

    An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.html component.

    КритическаяCVSS 9,8Proof of conceptEPSS 47 %

    foxcms · foxcms27 мар. 2025 г.

  • CVE-2025-25789
    39Наблюдать

    FoxCMS v1.2.5 was discovered to contain a remote code execution (RCE) vulnerability via the index() method at \controller\Sitemap.php.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    foxcms · foxcms26 февр. 2025 г.

  • CVE-2025-25790
    39Наблюдать

    An arbitrary file upload vulnerability in the component \controller\LocalTemplate.php of FoxCMS v1.2.5 allows attackers to execute arbitrary

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    foxcms · foxcms26 февр. 2025 г.

  • CVE-2025-50692
    39Наблюдать

    FoxCMS <=v1.2.5 is vulnerable to Code Execution in admin/template_file/editFile.html.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    foxcms · foxcms7 авг. 2025 г.

  • CVE-2025-55420
    35Наблюдать

    A Reflected Cross Site Scripting (XSS) vulnerability was found in /index.php in FoxCMS v1.2.6.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    foxcms · foxcms21 авг. 2025 г.

  • CVE-2025-55409
    35Наблюдать

    FoxCMS 1.2.6, there is a Cross Site Scripting vulnerability in /index.php/article.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    foxcms · foxcms25 авг. 2025 г.

  • CVE-2025-55422
    35Наблюдать

    In FoxCMS 1.2.6, there is a reflected Cross Site Scripting (XSS) vulnerability in /index.php/plus.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    foxcms · foxcms27 авг. 2025 г.

  • CVE-2025-46154
    33Наблюдать

    Foxcms v1.25 has a SQL time injection in the $_POST['dbname'] parameter of installdb.php.

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    foxcms · foxcms3 июн. 2025 г.

  • CVE-2025-56630
    29Наблюдать

    FoxCMS v1.2.5 and before is vulnerable to SQL Injection via the column_model parameter in the app/admin/controller/Column.php file.

    ВысокаяCVSS 7,3Эксплойта нетEPSS 0 %

    foxcms · foxcms8 сент. 2025 г.

  • CVE-2025-29181
    28Наблюдать

    FOXCMS <= V1.25 is vulnerable to SQL Injection via $param['title'] in /admin/util/Field.php.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %

    foxcms · foxcms17 апр. 2025 г.

  • CVE-2025-29180
    28Наблюдать

    In FOXCMS <=1.25, the installdb.php file has a time - based blind SQL injection vulnerability.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %

    foxcms · foxcms17 апр. 2025 г.

  • CVE-2025-5155
    21Наблюдать

    qianfox FoxCMS Article.php batchCope sql injection

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    foxcms · foxcms25 мая 2025 г.

  • CVE-2025-56435
    21Наблюдать

    SQL Injection vulnerability in FoxCMS v1.2.6 and before allows a remote attacker to execute arbitrary code via the.

    СредняяCVSS 5,3Эксплойта нетEPSS 0 %

    foxcms · foxcms3 сент. 2025 г.

  • CVE-2025-10251
    8Наблюдать

    FoxCMS Images.php batchCope sql injection

    НизкаяCVSS 2,1Эксплойта нетEPSS 0 %

    foxcms · foxcms11 сент. 2025 г.

  • CVE-2025-12920
    7Наблюдать

    qianfox FoxCMS Product.php edit cross site scripting

    НизкаяCVSS 1,9Эксплойта нетEPSS 0 %

    foxcms · foxcms9 нояб. 2025 г.