Known Vulnerabilities for products from Elefantcms
Listed below are 14 of the newest known vulnerabilities associated with the vendor "Elefantcms".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-16975 json | An issue was discovered in Elefant CMS before 2.0.7. There is a PHP Code Execution Vulnerability in /designer/add/stylesheet.... | 9.8 - CRITICAL | 2018-09-12 | 2020-08-24 |
| CVE-2018-16974 json | An issue was discovered in Elefant CMS before 2.0.7. There is a PHP Code Execution Vulnerability in apps/filemanager/upload/d... | 9.8 - CRITICAL | 2018-09-12 | 2018-11-19 |
| CVE-2018-16387 json | An issue was discovered in Elefant CMS before 2.0.5. There is a CSRF vulnerability that can add an account via user/add. | 8.8 - HIGH | 2018-09-03 | 2018-10-25 |
| CVE-2018-15601 json | apps/filemanager/handlers/upload/drop.php in Elefant CMS 2.0.3 performs a urldecode step too late in the "Cannot upload execu... | 9.8 - CRITICAL | 2018-08-21 | 2018-10-19 |
| CVE-2017-20064 json | A vulnerability was found in Elefant CMS 1.3.12-RC. It has been declared as critical. Affected by this vulnerability is an un... | 8.8 - HIGH | 2022-06-20 | 2022-06-27 |
| CVE-2017-20063 json | A vulnerability was found in Elefant CMS 1.3.12-RC. It has been classified as critical. Affected is an unknown function of th... | 8.8 - HIGH | 2022-06-20 | 2022-06-27 |
| CVE-2017-20062 json | A vulnerability was found in Elefant CMS 1.3.12-RC and classified as problematic. This issue affects some unknown processing.... | 8.8 - HIGH | 2022-06-20 | 2022-06-27 |
| CVE-2017-20061 json | A vulnerability has been found in Elefant CMS 1.3.12-RC and classified as problematic. This vulnerability affects unknown cod... | 5.4 - MEDIUM | 2022-06-20 | 2022-06-28 |
| CVE-2017-20060 json | A vulnerability, which was classified as problematic, was found in Elefant CMS 1.3.12-RC. This affects an unknown part of the... | 5.4 - MEDIUM | 2022-06-20 | 2022-06-28 |
| CVE-2017-20059 json | A vulnerability, which was classified as problematic, has been found in Elefant CMS 1.3.12-RC. Affected by this issue is some... | 5.4 - MEDIUM | 2022-06-20 | 2022-06-28 |
| CVE-2017-20058 json | A vulnerability classified as problematic was found in Elefant CMS 1.3.12-RC. Affected by this vulnerability is an unknown fu... | 6.1 - MEDIUM | 2022-06-20 | 2022-06-28 |
| CVE-2017-20057 json | A vulnerability classified as problematic has been found in Elefant CMS 1.3.12-RC. Affected is an unknown function. The manip... | 6.1 - MEDIUM | 2022-06-20 | 2022-06-28 |
| CVE-2012-6521 json | Cross-site scripting (XSS) vulnerability in apps/admin/handlers/versions.php in Elefant CMS 1.2.0 allows remote attackers to ... | Not Provided | 2013-01-24 | 2026-04-29 |
| CVE-2012-1296 json | Multiple cross-site scripting (XSS) vulnerabilities in apps/admin/handlers/preview.php in Elefant CMS 1.0.x before 1.0.2-Beta... | Not Provided | 2012-08-26 | 2026-04-29 |
Known software with vulnerabilities from Elefantcms
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Elefantcms | Elefant | 1.3.10 |
| Application | Elefantcms | Elefantcms | 0.9.0 |