Known Vulnerabilities for Articlecms by Articlecms Project
Listed below are 4 of the newest known vulnerabilities associated with "Articlecms" by "Articlecms Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-28063 json | A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell. | 9.8 - CRITICAL | 2021-05-13 | 2021-05-20 |
| CVE-2020-20092 json | File Upload vulnerability exists in ArticleCMS 1.0 via the image upload feature at /admin by changing the Content-Type to ima... | 9.8 - CRITICAL | 2021-05-13 | 2021-05-20 |
| CVE-2018-19469 json | ArticleCMS through 2017-02-19 has XSS via the /update_personal_infomation realname or email parameter. | 6.1 - MEDIUM | 2018-11-23 | 2018-12-19 |
| CVE-2018-12339 json | ArticleCMS through 2017-02-19 has XSS via an "add an article" action. | 5.4 - MEDIUM | 2018-06-13 | 2018-08-02 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Articlecms Project | Articlecms | 2017-02-19 | |||
| Application | Articlecms Project | Articlecms | - |