Known Vulnerabilities for Wms by Wms Project
Listed below are 3 of the newest known vulnerabilities associated with "Wms" by "Wms Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-33949 json | An issue in FeMiner WMS v1.1 allows attackers to execute arbitrary code via the filename parameter and the exec function. | 9.8 - CRITICAL | 2023-02-17 | 2023-02-28 |
| CVE-2020-18544 json | SQL Injection in WMS v1.0 allows remote attackers to execute arbitrary code via the "username" parameter in the component "ch... | 9.8 - CRITICAL | 2021-07-12 | 2021-07-14 |
| CVE-2020-18106 json | The GET parameter "id" in WMS v1.0 is passed without filtering, which allows attackers to perform SQL injection. | 9.8 - CRITICAL | 2021-08-27 | 2021-09-01 |