Known Vulnerabilities for products from Popojicms
Listed below are 13 of the newest known vulnerabilities associated with the vendor "Popojicms".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-5910 json | A vulnerability was found in PopojiCMS 2.0.1 and classified as problematic. This issue affects some unknown processing of the... | 6.1 - MEDIUM | 2023-11-02 | 2023-11-08 |
| CVE-2022-47766 json | PopojiCMS v2.0.1 backend plugin function has a file upload vulnerability. | 8.8 - HIGH | 2023-01-19 | 2023-01-25 |
| CVE-2021-28070 json | Cross Site Request Forgery (CSRF) vulnerability exist in PopojiCMS 2.0.1 in po-admin/route.php?mod=user&act=multidelete. | 4.3 - MEDIUM | 2021-08-25 | 2021-08-30 |
| CVE-2020-21357 json | A stored cross site scripting (XSS) vulnerability in /admin.php?mod=user&act=addnew of PopojiCMS 1.2 allows attackers to exec... | 6.1 - MEDIUM | 2021-08-06 | 2021-08-12 |
| CVE-2020-21356 json | An information disclosure vulnerability in upload.php of PopojiCMS 1.2 leads to physical path disclosure of the host when 'na... | 5.3 - MEDIUM | 2021-08-06 | 2021-08-13 |
| CVE-2020-19547 json | Directory Traversal vulnerability exists in PopojiCMS 2.0.1 via the id parameter in admin.php. | 6.5 - MEDIUM | 2021-08-25 | 2021-08-30 |
| CVE-2020-18065 json | Cross Site Scripting (XSS) vulnerability exists in PopojiCMS 2.0.1 in admin.php?mod=menumanager--------- edit menu. | 5.4 - MEDIUM | 2021-08-25 | 2021-09-07 |
| CVE-2019-18816 json | po-admin/route.php?mod=post&act=edit in PopojiCMS 2.0.1 allows post[1][content]= stored XSS. | 6.1 - MEDIUM | 2019-11-07 | 2019-11-08 |
| CVE-2019-18815 json | PopojiCMS 2.0.1 allows refer= Open Redirection. | 6.1 - MEDIUM | 2019-11-07 | 2019-11-08 |
| CVE-2019-9549 json | An issue was discovered in PopojiCMS v2.0.1. It has CSRF via the po-admin/route.php?mod=user&act=addnew URI, as demonstrated ... | 8.8 - HIGH | 2019-03-03 | 2019-03-04 |
| CVE-2018-18936 json | An issue was discovered in PopojiCMS v2.0.1. admin_library.php allows remote attackers to delete arbitrary files via director... | 7.5 - HIGH | 2018-11-05 | 2018-12-11 |
| CVE-2018-18935 json | An issue was discovered in PopojiCMS v2.0.1. It has CSRF via the po-admin/route.php?mod=component&act=addnew URI, as demonstr... | 8.8 - HIGH | 2018-11-05 | 2018-12-10 |
| CVE-2018-18934 json | An issue was discovered in PopojiCMS v2.0.1. admin_component.php is exploitable via the po-admin/route.php?mod=component&act=... | 9.8 - CRITICAL | 2018-11-05 | 2018-12-11 |
Known software with vulnerabilities from Popojicms
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Popojicms | Popojicms | 2.0.0 |