İçeriğe atla
Noroxi

anchorcms kayıtları

anchorcms üreticisine ait 13 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%7,7
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

13 kayıt
  • CVE-2018-7251
    61Bu hafta

    An issue was discovered in config/error.php in Anchor 0.12.3.

    KritikCVSS 9,8Kavram kanıtıEPSS %72

    anchorcms · anchor19 Şub 2018

  • CVE-2020-23342
    39İzleyin

    A CSRF vulnerability exists in Anchor CMS 0.12.7 anchor/views/users/edit.php that can change the Delete admin users.

    YüksekCVSS 8,8Kavram kanıtıEPSS %12

    anchorcms · anchor cms19 Oca 2021

  • CVE-2015-5687
    31İzleyin

    system/session/drivers/cookie.php in Anchor CMS 0.9.x allows remote attackers to conduct PHP object injection attacks and execute arbitrary

    YüksekCVSS 7,5İstismar yokEPSS %3

    anchorcms · anchor cms5 Eki 2015

  • CVE-2024-37732
    29İzleyin

    Cross Site Scripting vulnerability in Anchor CMS v.0.12.7 allows a remote attacker to execute arbitrary code via a crafted .pdf file.

    OrtaCVSS 6,1İstismar yokEPSS %17

    anchorcms · anchor cms24 Haz 2024

  • CVE-2024-29499
    29İzleyin

    Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via /anchor/admin/users/delete/2.

    YüksekCVSS 7,4İstismar yokEPSS %0

    anchorcms · anchor cms22 Mar 2024

  • CVE-2021-44116
    24İzleyin

    Cross Site Scripting (XSS) vulnerability exits in Anchor CMS <=0.12.7 in posts.php.

    OrtaCVSS 6,1İstismar yokEPSS %1

    anchorcms · anchor cms15 Ara 2021

  • CVE-2015-5060
    24İzleyin

    Cross-site scripting (XSS) vulnerability in anchor-cms before 0.9-dev.

    OrtaCVSS 6,1İstismar yokEPSS %1

    anchorcms · anchor cms7 Eyl 2017

  • CVE-2021-46253
    21İzleyin

    A cross-site scripting (XSS) vulnerability in the Create Post function of Anchor CMS v0.12.7 allows attackers to execute arbitrary web scrip

    OrtaCVSS 5,4İstismar yokEPSS %1

    anchorcms · anchor cms1 Şub 2022

  • CVE-2025-46041
    21İzleyin

    A stored cross-site scripting (XSS) vulnerability in Anchor CMS v0.12.7 allows attackers to inject malicious JavaScript via the page descrip

    OrtaCVSS 5,4Kavram kanıtıEPSS %1

    anchorcms · anchor cms9 Haz 2025

  • CVE-2020-12071
    19İzleyin

    Anchor 0.12.7 allows admins to cause XSS via crafted post content.

    OrtaCVSS 4,8İstismar yokEPSS %1

    anchorcms · anchor22 Nis 2020

  • CVE-2022-25576
    18İzleyin

    Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component anchor/routes/posts.php.

    OrtaCVSS 4,5İstismar yokEPSS %0

    anchorcms · anchor cms24 Mar 2022

  • CVE-2014-9182
    17İzleyin

    models/comment.php in Anchor CMS 0.9.2 and earlier allows remote attackers to inject arbitrary headers into mail messages via a crafted Host

    OrtaCVSS 4,3İstismar yokEPSS %1

    anchorcms · anchor cms2 Ara 2014

  • Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via /anchor/admin/categories/delete/2.

    DüşükCVSS 2,4İstismar yokEPSS %0

    anchorcms · anchor cms22 Mar 2024