← Back

Rianxosencabos Cms

rianxosencabos_cms

Vendor: Rianxosencabos Cms • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Rianxosencabos Cms
1Rianxosencabos Cms
Apr 23, 2026
Jan 30, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in scripts/links.php in Rianxosencabos CMS 0.9 allows remote attackers to execute arbitrary SQL commands via the id parameter.
1Rianxosencabos Cms
1Rianxosencabos Cms
Apr 23, 2026
Sep 25, 2008
N/A· v4
N/A· v3
6.5 MEDIUM· v2
The Admin Control Panel in Rianxosencabos CMS 0.9 does not require administrator privileges, which allows remote authenticated users to (1) change a user's privileges, (2) delete a user account, or perform unspecified ot...Show more
The Admin Control Panel in Rianxosencabos CMS 0.9 does not require administrator privileges, which allows remote authenticated users to (1) change a user's privileges, (2) delete a user account, or perform unspecified other administrative actions via vectors involving an admin lista action to the default URI, possibly related to useradmin.php.Show less
1Rianxosencabos Cms
1Rianxosencabos Cms
Apr 23, 2026
Sep 25, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
Rianxosencabos CMS 0.9 allows remote attackers to bypass authentication and gain administrative access by setting the usuario and pass cookies to 1.