Vulnerabilities
Vulnerable Software
Chshcms:  >> Cscms  >> 4.2  Security Vulnerabilities
A Cross-site request forgery (CSRF) vulnerability in Cscms music portal system v4.2 allows remote attackers to change the administrator's username and password.
CVSS Score
6.5
EPSS Score
0.001
Published
2022-06-09
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Dance.php_del.
CVSS Score
7.2
EPSS Score
0.002
Published
2022-04-15
Cscms Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the component dance_Dance.php_hy.
CVSS Score
7.2
EPSS Score
0.002
Published
2022-04-15
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Topic.php_del.
CVSS Score
7.2
EPSS Score
0.002
Published
2022-04-15
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Lists.php_zhuan.
CVSS Score
7.2
EPSS Score
0.002
Published
2022-04-15
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component news_News.php_hy.
CVSS Score
7.2
EPSS Score
0.002
Published
2022-04-15
Cscms Music Portal System v4.2 was discovered to contain a redirection vulnerability via the backurl parameter.
CVSS Score
5.4
EPSS Score
0.001
Published
2022-03-21


Contact Us

Shodan ® - All rights reserved