Vulnerabilities
Vulnerable Software
Mipcms:  >> Mipcms  Security Vulnerabilities
Cross Site Scripting (XSS) vulnerability in MIPCMS 3.6.0 allows attackers to execute arbitrary code via the category name field to categoryEdit.
CVSS Score
4.8
EPSS Score
0.001
Published
2023-05-08
A cross-site request forgery (CSRF) in MipCMS v5.0.1 allows attackers to arbitrarily add users via index.php?s=/user/ApiAdminUser/itemAdd.
CVSS Score
6.5
EPSS Score
0.001
Published
2021-09-09
A cross-site request forgery (CSRF) in MipCMS v5.0.1 allows attackers to arbitrarily escalate user privileges to administrator via index.php?s=/user/ApiAdminUser/itemEdit.
CVSS Score
8.8
EPSS Score
0.001
Published
2021-09-09
A server side request forgery (SSRF) vulnerability in /ApiAdminDomainSettings.php of MipCMS 5.0.1 allows attackers to access sensitive information.
CVSS Score
7.5
EPSS Score
0.002
Published
2021-07-08


Contact Us

Shodan ® - All rights reserved