Known Vulnerabilities for products from Articlecms Project
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Articlecms Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-28063 json | A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell. | 9.8 - CRITICAL | 2021-05-13 | 2021-05-20 |
| CVE-2020-20092 json | File Upload vulnerability exists in ArticleCMS 1.0 via the image upload feature at /admin by changing the Content-Type to ima... | 9.8 - CRITICAL | 2021-05-13 | 2021-05-20 |
| CVE-2018-19469 json | ArticleCMS through 2017-02-19 has XSS via the /update_personal_infomation realname or email parameter. | 6.1 - MEDIUM | 2018-11-23 | 2018-12-19 |
| CVE-2018-12339 json | ArticleCMS through 2017-02-19 has XSS via an "add an article" action. | 5.4 - MEDIUM | 2018-06-13 | 2018-08-02 |
Known software with vulnerabilities from Articlecms Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Articlecms Project | Articlecms | - |