İçeriğe atla
Noroxi

codelyfe kayıtları

codelyfe üreticisine ait 11 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

11 kayıt
  • CVE-2023-6901
    40Planlayın

    codelyfe Stupid Simple CMS HTTP POST Request handle-command.php os command injection

    KritikCVSS 9,8İstismar yokEPSS %3

    codelyfe · stupid simple cms17 Ara 2023

  • CVE-2023-6902
    39İzleyin

    codelyfe Stupid Simple CMS upload.php unrestricted upload

    KritikCVSS 9,8İstismar yokEPSS %1

    codelyfe · stupid simple cms17 Ara 2023

  • CVE-2023-6907
    36İzleyin

    codelyfe Stupid Simple CMS Deletion Interface delete.php improper authentication

    KritikCVSS 9,1İstismar yokEPSS %1

    codelyfe · stupid simple cms18 Ara 2023

  • CVE-2024-27689
    35İzleyin

    Stupid Simple CMS v1.2.4 was discovered to contain a Cross-Site Request Forgery (CSRF) via /update-article.php.

    YüksekCVSS 8,8İstismar yokEPSS %0

    codelyfe · stupid simple cms1 Mar 2024

  • CVE-2024-22715
    35İzleyin

    Stupid Simple CMS <=1.2.4 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin-edit.php.

    YüksekCVSS 8,8İstismar yokEPSS %0

    codelyfe · stupid simple cms17 Oca 2024

  • CVE-2023-7040
    26İzleyin

    codelyfe Stupid Simple CMS rename.php path traversal

    OrtaCVSS 6,5İstismar yokEPSS %1

    codelyfe · stupid simple cms21 Ara 2023

  • CVE-2024-27559
    25İzleyin

    Stupid Simple CMS v1.2.4 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /save_settings.php

    OrtaCVSS 6,3İstismar yokEPSS %0

    codelyfe · stupid simple cms1 Mar 2024

  • CVE-2024-27558
    24İzleyin

    Stupid Simple CMS 1.2.4 is vulnerable to Cross Site Scripting (XSS) within the blog title of the settings.

    OrtaCVSS 6,1İstismar yokEPSS %0

    codelyfe · stupid simple cms1 Mar 2024

  • CVE-2024-22714
    24İzleyin

    Stupid Simple CMS <=1.2.4 is vulnerable to Cross Site Scripting (XSS) in the editing section of the article content.

    OrtaCVSS 6,1İstismar yokEPSS %0

    codelyfe · stupid simple cms17 Oca 2024

  • CVE-2024-3202
    23İzleyin

    codelyfe Stupid Simple CMS Login Page excessive authentication

    OrtaCVSS 5,9İstismar yokEPSS %1

    codelyfe · stupid simple cms2 Nis 2024

  • CVE-2023-7041
    21İzleyin

    codelyfe Stupid Simple CMS rename.php path traversal

    OrtaCVSS 5,4İstismar yokEPSS %1

    codelyfe · stupid simple cms21 Ara 2023