Перейти к содержимому
Noroxi

Записи lepton-cms

13 опубликованных записей вендора lepton-cms.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

13 записей
  • CVE-2024-29514
    35Наблюдать

    File Upload vulnerability in lepton v.7.1.0 allows a remote authenticated attackers to execute arbitrary code via uploading a crafted PHP fi

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    lepton-cms · leptoncms2 апр. 2024 г.

  • CVE-2024-29515
    35Наблюдать

    File Upload vulnerability in lepton v.7.1.0 allows a remote authenticated attackers to execute arbitrary code via uploading a crafted PHP fi

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    lepton-cms · leptoncms25 мар. 2024 г.

  • CVE-2025-56704
    35Наблюдать

    LeptonCMS version 7.3.0 contains an arbitrary file upload vulnerability, which is caused by the lack of proper validation for uploaded files

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    lepton-cms · leptoncms9 дек. 2025 г.

  • CVE-2024-24399
    33Наблюдать

    An arbitrary file upload vulnerability in LEPTON v7.0.0 allows authenticated attackers to execute arbitrary PHP code by uploading this code

    ВысокаяCVSS 7,2Эксплойта нетEPSS 16 %

    lepton-cms · leptoncms25 янв. 2024 г.

  • CVE-2012-0998
    31Наблюдать

    Directory traversal vulnerability in account/preferences.php in LEPTON before 1.1.4 allows remote attackers to include and execute arbitrary

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    lepton-cms · lepton24 февр. 2012 г.

  • CVE-2024-24520
    31Наблюдать

    An issue in Lepton CMS v.7.0.0 allows a local attacker to execute arbitrary code via the upgrade.php file in the languages place.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    lepton-cms · leptoncms20 мар. 2024 г.

  • CVE-2012-0999
    30Наблюдать

    SQL injection vulnerability in modules/news/rss.php in LEPTON before 1.1.4 allows remote attackers to execute arbitrary SQL commands via the

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    lepton-cms · lepton24 февр. 2012 г.

  • CVE-2020-12707
    24Наблюдать

    An XSS vulnerability exists in modules/wysiwyg/save.php of LeptonCMS 4.5.0.

    СредняяCVSS 6,1Proof of conceptEPSS 1 %

    lepton-cms · lepton cms7 мая 2020 г.

  • CVE-2020-12705
    24Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities exist in LeptonCMS before 4.6.0.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    lepton-cms · leptoncms7 мая 2020 г.

  • CVE-2020-24872
    24Наблюдать

    Cross Site Scripting (XSS) vulnerability in backend/pages/modify.php in Lepton-CMS version 4.7.0, allows remote attackers to execute arbitra

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    lepton-cms · leptoncms11 авг. 2023 г.

  • CVE-2020-29240
    20Наблюдать

    Lepton-CMS 4.7.0 is affected by cross-site scripting (XSS).

    СредняяCVSS 4,8Proof of conceptEPSS 2 %

    lepton-cms · leptoncms2 дек. 2020 г.

  • CVE-2012-1000
    17Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in LEPTON 1.1.3 and other versions before 1.1.4 allow remote attackers to inject arbitra

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    lepton-cms · lepton24 февр. 2012 г.

  • CVE-2011-3385
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in WebsiteBaker before 2.8, as used in LEPTON and possibly other products, allows remote attackers

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    lepton-cms · lepton2 сент. 2011 г.