Перейти к содержимому
Noroxi

Записи nucleuscms

7 опубликованных записей вендора nucleuscms.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
3
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

7 записей
  • CVE-2020-21474
    39Наблюдать

    File Upload vulnerability in NucleusCMS v.3.71 allows a remote attacker to execute arbitrary code via the /nucleus/plugins/skinfiles/?dir=rs

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    nucleuscms · nucleuscms20 июн. 2023 г.

  • CVE-2010-5041
    30Наблюдать

    SQL injection vulnerability in index.php in the NP_Gallery plugin 0.94 for Nucleus allows remote attackers to execute arbitrary SQL commands

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    john bradshaw · np gallery plugin2 нояб. 2011 г.

  • CVE-2010-5040
    28Наблюдать

    PHP remote file inclusion vulnerability in nucleus/plugins/NP_gallery.php in the NP_Gallery plugin 0.94 for Nucleus allows remote attackers

    СредняяCVSS 6,8Proof of conceptEPSS 2 %

    john bradshaw · np gallery plugin2 нояб. 2011 г.

  • CVE-2021-37770
    28Наблюдать

    Nucleus CMS v3.71 is affected by a file upload vulnerability.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    nucleuscms · nucleus cms30 июн. 2022 г.

  • CVE-2018-16636
    26Наблюдать

    Nucleus CMS 3.70 allows HTML Injection via the index.php body parameter.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    nucleuscms · nucleus cms10 дек. 2018 г.

  • CVE-2011-3760
    20Наблюдать

    Nucleus 3.61 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation pat

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    nucleuscms · nucleus cms23 сент. 2011 г.

  • CVE-2015-5454
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in Nucleus CMS allows remote attackers to inject arbitrary web script or HTML via the title paramet

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    nucleuscms · nucleus cms8 июл. 2015 г.