Chshcms
chshcms
53 CVEs • 3 products
Products (3)
Click to collapseToggle
Products (3)
Click to collapse
CVEs (53)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Links/del. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/user/zu_del. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/lists/zhuan. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/del. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/lists/zhuan. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via /admin.php/pic/admin/pic/hy. This vulnerability is exploited via restoring deleted photos. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/lists/zhuan. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/topic/save. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/pl_save. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/hy. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/news/save. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/save. |
1Chshcms 1Cscms Music Portal System Nov 21, 2024 May 26, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/pic/del. |
Cscms 4.1 is vulnerable to SQL Injection. Log into the background, open the song module, create a new song, delete it to the recycle bin, and SQL injection security problems will occur when emptying the recycle bin. |
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component news_News.php_hy. |
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Lists.php_zhuan. |
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Topic.php_del. |
Cscms Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the component dance_Dance.php_hy. |
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Dance.php_del. |
Cscms Music Portal System v4.2 was discovered to contain a redirection vulnerability via the backurl parameter. |