Known Vulnerabilities for Nonecms by 5none
Listed below are 10 of the newest known vulnerabilities associated with "Nonecms" by "5none".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-23376 json | NoneCMS v1.3 has a CSRF vulnerability in public/index.php/admin/nav/add.html, as demonstrated by adding a navigation column w... | 6.1 - MEDIUM | 2021-05-10 | 2022-10-26 |
| CVE-2020-23374 json | Cross-site scripting (XSS) vulnerability in admin/article/add.html in noneCMS v1.3.0 allows remote authenticated attackers to... | 5.4 - MEDIUM | 2021-05-10 | 2021-05-12 |
| CVE-2020-23373 json | Cross-site scripting (XSS) vulnerability in admin/nav/add.html in noneCMS v1.3.0 allows remote authenticated attackers to inj... | 5.4 - MEDIUM | 2021-05-10 | 2021-05-12 |
| CVE-2020-23371 json | Cross-site scripting (XSS) vulnerability in static/admin/js/kindeditor/plugins/multiimage/images/swfupload.swf in noneCms v1.... | 6.1 - MEDIUM | 2021-05-10 | 2021-05-13 |
| CVE-2020-18647 json | Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/nonecms/ve... | 7.5 - HIGH | 2021-06-22 | 2021-06-24 |
| CVE-2020-18646 json | Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/public/ind... | 7.5 - HIGH | 2021-06-22 | 2021-06-24 |
| CVE-2020-18282 json | Cross-site scripting (XSS) vulnerability in NoneCms 1.3.0 allows remote attackers to inject arbitrary web script or HTML via ... | 6.1 - MEDIUM | 2023-05-08 | 2023-05-11 |
| CVE-2019-16721 json | NoneCMS v1.3 has CSRF in public/index.php/admin/admin/dele.html, as demonstrated by deleting the admin user. | 6.5 - MEDIUM | 2019-09-23 | 2019-09-23 |
| CVE-2018-20062 json | An issue was discovered in NoneCms V1.3. thinkphp/library/think/App.php allows remote attackers to execute arbitrary PHP code... | 9.8 - CRITICAL | 2018-12-11 | 2020-04-14 |
| CVE-2018-7219 json | application/admin/controller/Admin.php in NoneCms 1.3.0 has CSRF, as demonstrated by changing an admin password or adding an ... | 8.8 - HIGH | 2018-02-19 | 2018-03-14 |