Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Tuzicms:
>> Tuzicms
>> 2.0.6
Security Vulnerabilities
CVE-2022-46999
Tuzicms v2.0.6 was discovered to contain a SQL injection vulnerability via the component \App\Manage\Controller\UserController.class.php.
CVSS Score
9.8
EPSS Score
0.003
Published
2023-01-26
CVE-2022-23882
TuziCMS 2.0.6 is affected by SQL injection in \App\Manage\Controller\BannerController.class.php.
CVSS Score
9.8
EPSS Score
0.002
Published
2022-03-28
CVE-2019-16657
TuziCMS 2.0.6 has XSS via the PATH_INFO to a group URI, as demonstrated by index.php/article/group/id/2/.
CVSS Score
6.1
EPSS Score
0.002
Published
2019-09-21
CVE-2019-16658
TuziCMS 2.0.6 has index.php/manage/notice/do_add CSRF.
CVSS Score
8.8
EPSS Score
0.001
Published
2019-09-21
CVE-2019-16659
TuziCMS 2.0.6 has index.php/manage/link/do_add CSRF.
CVSS Score
8.8
EPSS Score
0.001
Published
2019-09-21
CVE-2019-16644
App\Home\Controller\ZhuantiController.class.php in TuziCMS 2.0.6 has SQL injection via the index.php/Zhuanti/group?id= substring.
CVSS Score
9.8
EPSS Score
0.002
Published
2019-09-20
CVE-2018-10185
An issue was discovered in TuziCMS v2.0.6. There is a CSRF vulnerability that can add an admin account, as demonstrated by a history.pushState call.
CVSS Score
8.8
EPSS Score
0.001
Published
2018-04-17
Page 1
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved