jspring996/PHPcodecms

jspring996/PHPcodecms

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
9.1 CRITICAL

bloofox v0.5.2 was discovered to contain an arbitrary file deletion vulnerability via the delete_file() function.

8.8 HIGH

bloofox v0.5.2 was discovered to contain a SQL injection vulnerability via the component /index.php?mode=content&page=pages&action=edit&eid=1.

9.8 CRITICAL

lmxcms v1.4.1 was discovered to contain a SQL injection vulnerability via the setbook parameter at index.php.