
choregus/puppyCMS
Releases5
Frequency1 month 2 weeks
Last Release
Stars28
Tiny, simple, flat file CMS in PHP that is SEO friendly and responsive. There's no database for this easy content management system and templates are gorgeous. Build micro sites, simple blogs by using Markdown and the included file manager. Tags:small, nano, lightweight, content management system, search engine optimization
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 7.5 HIGH | 5 MEDIUM | ||
Arbitrary File Deletion vulnerability in puppyCMS v5.1 allows remote malicious attackers to delete the file/folder via /admin/functions.php. | |||
| 9.8 CRITICAL | 7.5 HIGH | ||
Rmote Code Execution (RCE) vulnerability in puppyCMS v5.1 due to insecure permissions, which could let a remote malicious user getshell via /admin/functions.php. | |||
| 6.5 MEDIUM | 4.3 MEDIUM | ||
Cross Site Request Forgery (CSRF) vulnerability in puppyCMS v5.1 that can change the admin's password via /admin/settings.php. | |||
| — | 4.3 MEDIUM | ||
An issue was discovered in puppyCMS 5.1. There is an XSS vulnerability via menu.php in the "Add Page/URL" URL link field. | |||