Known Vulnerabilities for products from Dswjcms Project
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Dswjcms Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-19268 json | A cross-site request forgery (CSRF) in index.php/Dswjcms/User/tfAdd of Dswjcms 1.6.4 allows authenticated attackers to arbitr... | 5.7 - MEDIUM | 2021-09-09 | 2021-09-22 |
| CVE-2020-19267 json | An issue in index.php/Dswjcms/Basis/resources of Dswjcms 1.6.4 allows attackers to execute arbitrary code via uploading a cra... | 9.8 - CRITICAL | 2021-09-09 | 2021-09-22 |
| CVE-2020-19266 json | A stored cross-site scripting (XSS) vulnerability in the index.php/Dswjcms/Site/articleList component of Dswjcms 1.6.4 allows... | 6.1 - MEDIUM | 2021-09-09 | 2021-09-14 |
| CVE-2020-19265 json | A stored cross-site scripting (XSS) vulnerability in the index.php/Dswjcms/Basis/links component of Dswjcms 1.6.4 allows atta... | 6.1 - MEDIUM | 2021-09-09 | 2021-09-14 |