Vulnerabilities
Vulnerable Software
Umi-Cms:  Security Vulnerabilities
Cross-site request forgery (CSRF) vulnerability in Umisoft UMI.CMS before 2.9 build 21905 allows remote attackers to hijack the authentication of administrators for requests that add administrator accounts via a request to admin/users/add/user/do/.
CVSS Score
6.8
EPSS Score
0.004
Published
2014-03-11
Cross-site scripting (XSS) vulnerability in UMI CMS allows remote attackers to inject arbitrary web script or HTML via the search_string parameter to the default URI in search_do/.
CVSS Score
4.3
EPSS Score
0.015
Published
2007-10-12


Contact Us

Shodan ® - All rights reserved