← Back

Ecisp

ecisp

7 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Espcms
espcms
Espcms P8
espcms-p8

CVEs (7)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ecisp
1Espcms
Nov 21, 2024
Jun 27, 2023
N/A· v4
4.8 MEDIUM· v3
N/A· v2
An issue was discovered in espcms version P8.18101601. There is a cross site scripting (XSS) vulnerability that allows arbitrary code to be executed via the title parameter.
1Ecisp
1Espcms
Mar 18, 2025
Feb 17, 2023
N/A· v4
7.2 HIGH· v3
N/A· v2
An issue was discovered in ESPCMS P8.21120101 after logging in to the background, there is a SQL injection vulnerability in the function node where members are added.
1Ecisp
1Espcms
May 1, 2025
Nov 10, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
ESPCMS P8.21120101 was discovered to contain a remote code execution (RCE) vulnerability in the component IS_GETCACHE.
1Ecisp
1Espcms
May 1, 2025
Nov 10, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
ESPCMS P8.21120101 was discovered to contain a remote code execution (RCE) vulnerability in the component INPUT_ISDESCRIPTION.
1Ecisp
1Espcms
May 1, 2025
Nov 10, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
ESPCMS P8.21120101 was discovered to contain a remote code execution (RCE) vulnerability in the component UPFILE_PIC_ZOOM_HIGHT.
1Ecisp
1Espcms P8
Nov 21, 2024
Jun 30, 2022
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
ESPCMS P8 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the fetch_filename function at \espcms_public\espcms_templates\ESPCMS_Templates.
1Ecisp
1Espcms P8
Nov 21, 2024
Aug 24, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
EARCLINK ESPCMS-P8 was discovered to contain a SQL injection vulnerability in the espcms_web/Search.php component via the attr_array parameter. This vulnerability allows attackers to access sensitive database information...Show more
EARCLINK ESPCMS-P8 was discovered to contain a SQL injection vulnerability in the espcms_web/Search.php component via the attr_array parameter. This vulnerability allows attackers to access sensitive database information.Show less