Known Vulnerabilities for products from Lovecms
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Lovecms".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2008-7062 json | Unrestricted file upload vulnerability in admin/index.php in Download Manager module 1.0 for LoveCMS 1.6.2 Final allows remot... | Not Provided | 2009-08-25 | 2026-04-23 |
| CVE-2008-5794 json | Directory traversal vulnerability in system/admin/images.php in LoveCMS 1.6.2 Final allows remote attackers to delete arbitra... | Not Provided | 2008-12-31 | 2026-04-23 |
| CVE-2008-5308 json | The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allo... | Not Provided | 2008-12-02 | 2026-04-23 |
| CVE-2008-3509 json | LoveCMS 1.6.2 does not require administrative authentication for (1) addblock.php, (2) blocks.php, and (3) themes.php in syst... | Not Provided | 2008-08-07 | 2026-04-23 |
| CVE-2007-1151 json | Cross-site scripting (XSS) vulnerability in LoveCMS 1.4 allows remote attackers to inject arbitrary web script or HTML via th... | Not Provided | 2007-03-02 | 2026-04-23 |
| CVE-2007-1150 json | Unrestricted file upload vulnerability in LoveCMS 1.4 allows remote authenticated administrators to upload arbitrary files to... | Not Provided | 2007-03-02 | 2026-04-23 |
| CVE-2007-1149 json | Multiple directory traversal vulnerabilities in LoveCMS 1.4 allow remote attackers to read arbitrary files via a .. (dot dot)... | Not Provided | 2007-03-02 | 2026-04-23 |
| CVE-2007-1148 json | PHP remote file inclusion vulnerability in install/index.php in LoveCMS 1.4 allows remote attackers to execute arbitrary PHP ... | Not Provided | 2007-03-02 | 2026-04-23 |