Vulnerabilities
Vulnerable Software
Puppycms:  >> Puppycms  Security Vulnerabilities
A vulnerability classified as problematic has been found in puppyCMS up to 5.1. This affects an unknown part of the file /admin/settings.php. The manipulation of the argument site_name leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-210699.
CVSS Score
4.3
EPSS Score
0.001
Published
2022-10-12
Arbitrary File Deletion vulnerability in puppyCMS v5.1 allows remote malicious attackers to delete the file/folder via /admin/functions.php.
CVSS Score
7.5
EPSS Score
0.002
Published
2021-05-06
Rmote Code Execution (RCE) vulnerability in puppyCMS v5.1 due to insecure permissions, which could let a remote malicious user getshell via /admin/functions.php.
CVSS Score
9.8
EPSS Score
0.006
Published
2021-05-06
Cross Site Request Forgery (CSRF) vulnerability in puppyCMS v5.1 that can change the admin's password via /admin/settings.php.
CVSS Score
6.5
EPSS Score
0.002
Published
2021-05-06
An issue was discovered in puppyCMS 5.1. There is an XSS vulnerability via menu.php in the "Add Page/URL" URL link field.
CVSS Score
6.1
EPSS Score
0.002
Published
2018-08-25


Contact Us

Shodan ® - All rights reserved