İçeriğe atla
Noroxi

nucleuscms kayıtları

nucleuscms üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

7 kayıt
  • CVE-2020-21474
    39İzleyin

    File Upload vulnerability in NucleusCMS v.3.71 allows a remote attacker to execute arbitrary code via the /nucleus/plugins/skinfiles/?dir=rs

    KritikCVSS 9,8İstismar yokEPSS %1

    nucleuscms · nucleuscms20 Haz 2023

  • CVE-2010-5041
    30İzleyin

    SQL injection vulnerability in index.php in the NP_Gallery plugin 0.94 for Nucleus allows remote attackers to execute arbitrary SQL commands

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    john bradshaw · np gallery plugin2 Kas 2011

  • CVE-2010-5040
    28İzleyin

    PHP remote file inclusion vulnerability in nucleus/plugins/NP_gallery.php in the NP_Gallery plugin 0.94 for Nucleus allows remote attackers

    OrtaCVSS 6,8Kavram kanıtıEPSS %2

    john bradshaw · np gallery plugin2 Kas 2011

  • CVE-2021-37770
    28İzleyin

    Nucleus CMS v3.71 is affected by a file upload vulnerability.

    YüksekCVSS 7,2İstismar yokEPSS %1

    nucleuscms · nucleus cms30 Haz 2022

  • CVE-2018-16636
    26İzleyin

    Nucleus CMS 3.70 allows HTML Injection via the index.php body parameter.

    OrtaCVSS 6,5İstismar yokEPSS %1

    nucleuscms · nucleus cms10 Ara 2018

  • CVE-2011-3760
    20İzleyin

    Nucleus 3.61 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation pat

    OrtaCVSS 5,0İstismar yokEPSS %1

    nucleuscms · nucleus cms23 Eyl 2011

  • CVE-2015-5454
    17İzleyin

    Cross-site scripting (XSS) vulnerability in Nucleus CMS allows remote attackers to inject arbitrary web script or HTML via the title paramet

    OrtaCVSS 4,3İstismar yokEPSS %2

    nucleuscms · nucleus cms8 Tem 2015