Known Vulnerabilities for Ignitedcms by Ignitedcms Project
Listed below are 3 of the newest known vulnerabilities associated with "Ignitedcms" by "Ignitedcms Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-18694 json | Cross Site Request Forgery (CSRF) in IgnitedCMS v1.0 allows remote attackers to obtain sensitive information and gain privile... | 8.8 - HIGH | 2021-08-06 | 2021-08-13 |
| CVE-2019-13370 json | index.php/admin/permissions in Ignited CMS through 2017-02-19 allows CSRF to add an administrator. | 8.8 - HIGH | 2019-07-06 | 2019-07-09 |
| CVE-2018-15203 json | An issue was discovered in Ignited CMS through 2017-02-19. ign/index.php/admin/pages/add_page allows a CSRF attack to add pag... | 6.5 - MEDIUM | 2018-08-08 | 2018-10-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ignitedcms Project | Ignitedcms | 2017-02-19 |