← Back

Cmseasy

cmseasy

Vendor: Cmseasy • 23 CVEs

CVEs (23)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cmseasy
1Cmseasy
Jun 17, 2026
Feb 18, 2019
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
In CmsEasy 7.0, there is XSS via the ckplayer.php url parameter.
1Cmseasy
1Cmseasy
Nov 21, 2024
Jun 2, 2018
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability in the rich text editor that can add an IFRAME element. This might be used in a DoS attack if a referenced remote URL is refreshed at a rapid...Show more
An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability in the rich text editor that can add an IFRAME element. This might be used in a DoS attack if a referenced remote URL is refreshed at a rapid rate.Show less
1Cmseasy
1Cmseasy
Nov 21, 2024
Jun 2, 2018
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability that can add an article via /index.php?case=table&act=add&table=archive&admin_dir=admin.