Known Vulnerabilities for products from Comsenz
Listed below are 9 of the newest known vulnerabilities associated with the vendor "Comsenz".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-20424 json | Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to delete the common_member_wechatmp data structur... | 5.9 - MEDIUM | 2018-12-24 | 2019-01-10 |
| CVE-2018-20423 json | Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to bypass a "disabled registration" setting by add... | 8.1 - HIGH | 2018-12-24 | 2019-10-03 |
| CVE-2018-20422 json | Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to bypass authentication by leveraging a non-empty... | 8.1 - HIGH | 2018-12-24 | 2019-10-03 |
| CVE-2018-18084 json | An issue was discovered in DuomiCMS 3.0. SQL injection exists in the ajax.php file, as demonstrated by the uid parameter. | 9.8 - CRITICAL | 2018-10-09 | 2020-06-17 |
| CVE-2018-18083 json | An issue was discovered in DuomiCMS 3.0. Remote PHP code execution is possible via the search.php searchword parameter becaus... | 9.8 - CRITICAL | 2018-10-09 | 2018-11-29 |
| CVE-2018-14729 json | The database backup feature in upload/source/admincp/admincp_db.php in Discuz! 2.5 and 3.4 allows remote attackers to execute... | 8.8 - HIGH | 2019-05-22 | 2019-05-23 |
| CVE-2009-3185 json | SQL injection vulnerability in plugin.php in the Crazy Star plugin 2.0 for Discuz! allows remote authenticated users to execu... | Not Provided | 2009-09-15 | 2026-04-23 |
| CVE-2008-6958 json | wap/index.php in Crossday Discuz! Board 6.x and 7.x allows remote authenticated users to execute arbitrary PHP code via the c... | Not Provided | 2009-08-12 | 2026-04-23 |
| CVE-2008-3554 json | SQL injection vulnerability in index.php in Discuz! 6.0.1 allows remote attackers to execute arbitrary SQL commands via the s... | Not Provided | 2008-08-08 | 2026-04-23 |
Known software with vulnerabilities from Comsenz
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Comsenz | Duomicms | 3.0 |