Known Vulnerabilities for Atomcms by Thedigitalcraft
Listed below are 10 of the newest known vulnerabilities associated with "Atomcms" by "Thedigitalcraft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-28036 json | AtomCMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_ajax_navigation.php | 9.8 - CRITICAL | 2022-04-12 | 2022-04-18 |
| CVE-2022-28035 json | Atom.CMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_ajax_blur-save.php | 9.8 - CRITICAL | 2022-04-12 | 2022-04-18 |
| CVE-2022-28034 json | AtomCMS 2.0 is vulnerabie to SQL Injection via Atom.CMS_admin_ajax_list-sort.php | 9.8 - CRITICAL | 2022-04-12 | 2022-04-18 |
| CVE-2022-28033 json | Atom.CMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_uploads.php | 9.8 - CRITICAL | 2022-04-12 | 2022-04-18 |
| CVE-2022-28032 json | AtomCMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_ajax_pages.php | 9.8 - CRITICAL | 2022-04-12 | 2022-04-18 |
| CVE-2022-25489 json | Atom CMS v2.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the "A" parameter in /widget... | 5.4 - MEDIUM | 2022-03-15 | 2022-03-23 |
| CVE-2022-25488 json | Atom CMS v2.0 was discovered to contain a SQL injection vulnerability via the id parameter in /admin/ajax/avatar.php. | 9.8 - CRITICAL | 2022-03-15 | 2022-03-23 |
| CVE-2022-25487 json | Atom CMS v2.0 was discovered to contain a remote code execution (RCE) vulnerability via /admin/uploads.php. | 9.8 - CRITICAL | 2022-03-15 | 2022-03-31 |
| CVE-2022-24223 json | AtomCMS v2.0 was discovered to contain a SQL injection vulnerability via /admin/login.php. | 9.8 - CRITICAL | 2022-02-01 | 2022-02-22 |
| CVE-2014-4852 json | Not Provided | 2014-07-10 | 2026-05-06 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Thedigitalcraft | Atomcms | 2.0 |