Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In July 2021
Cross Site Request Forgery (CSRF) vulnerability in MetInfo 6.1.3 via a doaddsave action in admin/index.php.
CVSS Score
8.8
EPSS Score
0.001
Published
2021-07-30
Cross Site Scripting (XSS) vulnerability in HuCart 5.7.4 via nickname in index.php.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-07-30
SQL Injection vulnerability in Metinfo 6.1.3 via a dosafety_emailadd action in basic.php.
CVSS Score
9.8
EPSS Score
0.005
Published
2021-07-30
Cross Site Scripting (XSS) vulnerabiity in YzmCMS 5.2 via the site_code parameter in admin/index/init.html.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-07-30
A remote code execution (RCE) vulnerability in /1.com.php of S-CMS PHP v3.0 allows attackers to getshell via modification of a PHP file.
CVSS Score
7.2
EPSS Score
0.023
Published
2021-07-30
A cross site scripting (XSS) vulnerability in S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the Copyright text box under Basic Settings.
CVSS Score
4.8
EPSS Score
0.003
Published
2021-07-30
A stored cross site scripting (XSS) vulnerability in /app/form_add/of S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the Title Entry text box.
CVSS Score
4.8
EPSS Score
0.003
Published
2021-07-30
A stored cross site scripting (XSS) vulnerability in /app/config/of S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVSS Score
4.8
EPSS Score
0.003
Published
2021-07-30
SQL Injection Vulnerability in ECTouch v2 via the shop page in index.php..
CVSS Score
9.8
EPSS Score
0.002
Published
2021-07-30
SQL Injection vulnerability in NukeViet CMS 4.0.10 - 4.3.07 via:the topicsid parameter in modules/news/admin/addtotopics.php.
CVSS Score
9.8
EPSS Score
0.009
Published
2021-07-30


Contact Us

Shodan ® - All rights reserved