Known Vulnerabilities for Frog Cms by Frog Cms Project
Listed below are 10 of the newest known vulnerabilities associated with "Frog Cms" by "Frog Cms Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-1010235 json | Frog CMS 1.1 is affected by: Cross Site Scripting (XSS). The impact is: Cookie stealing, Alert pop-up on page, Redirecting to... | 5.4 - MEDIUM | 2019-07-22 | 2019-07-23 |
| CVE-2019-6243 json | Frog CMS 0.9.5 allows XSS via the forgot password page (aka the /admin/?/login/forgot URI). | 6.1 - MEDIUM | 2019-01-12 | 2019-01-16 |
| CVE-2018-20778 json | admin/?/plugin/file_manager in Frog CMS 0.9.5 allows XSS by creating a new file containing a crafted attribute of an IMG elem... | 6.1 - MEDIUM | 2019-02-11 | 2019-02-11 |
| CVE-2018-20777 json | Frog CMS 0.9.5 has XSS via the admin/?/snippet/edit/1 Body field. | 5.4 - MEDIUM | 2019-02-11 | 2019-02-11 |
| CVE-2018-20776 json | Frog CMS 0.9.5 provides a directory listing for a /public request. | 7.5 - HIGH | 2019-02-11 | 2019-02-11 |
| CVE-2018-20775 json | admin/?/plugin/file_manager in Frog CMS 0.9.5 allows PHP code execution by creating a new .php file containing PHP code, and ... | 7.2 - HIGH | 2019-02-11 | 2019-02-11 |
| CVE-2018-20774 json | Frog CMS 0.9.5 has XSS via the admin/?/layout/edit/1 Body field. | 5.4 - MEDIUM | 2019-02-11 | 2019-02-11 |
| CVE-2018-20773 json | Frog CMS 0.9.5 allows PHP code execution by visiting admin/?/page/edit/1 and inserting additional | 7.2 - HIGH | 2019-02-11 | 2019-02-11 |
| CVE-2018-20772 json | Frog CMS 0.9.5 allows PHP code execution via | 7.2 - HIGH | 2019-02-11 | 2019-02-11 |
| CVE-2018-20680 json | Frog CMS 0.9.5 has XSS in the admin/?/page/edit/1 body field. | 4.8 - MEDIUM | 2019-01-09 | 2019-01-11 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Frog Cms Project | Frog Cms | 1.1 | |||
| Application | Frog Cms Project | Frog Cms | 0.9.5 |