Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
wolfcms wolf cms vulnerabilities and exploits
(subscribe to this query)
4.8
CVSSv3
CVE-2018-8813
Open redirect vulnerability in the login[redirect] parameter login functionality in WolfCMS 0.8.3.1 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a malformed URL.
Wolfcms Wolf Cms 0.8.3.1
1 EDB exploit
4.8
CVSSv3
CVE-2018-6890
Cross-site scripting (XSS) vulnerability in Wolf CMS 0.8.3.1 via the page editing feature, as demonstrated by /?/admin/page/edit/3.
Wolfcms Wolf Cms 0.8.3.1
1 Github repository
5.4
CVSSv3
CVE-2017-11611
Wolf CMS 0.8.3.1 allows Cross-Site Scripting (XSS) attacks. The vulnerability exists due to insufficient sanitization of the file name in a "create-file-popup" action, and the directory name in a "create-directory-popup" action, in the HTTP POST method to the ...
Wolfcms Wolf Cms 0.8.3.1
1 Github repository
6.5
CVSSv3
CVE-2018-8814
Cross-site request forgery (CSRF) vulnerability in WolfCMS 0.8.3.1 allows remote malicious users to hijack the authentication of users for requests that modify plugin/[pluginname]/settings by crafting a malicious request.
Wolfcms Wolf Cms 0.8.3.1
1 EDB exploit
6.1
CVSSv3
CVE-2019-10646
Wolf CMS v0.8.3.1 is affected by cross site scripting (XSS) in the module Add Snippet (/?/admin/snippet/add). This allows an malicious user to insert arbitrary JavaScript as user input, which will be executed whenever the affected snippet is loaded.
Wolfcms Wolf Cms 0.8.3.1
4.8
CVSSv3
CVE-2018-14837
Wolf CMS 0.8.3.1 has XSS in the Snippets tab, as demonstrated by a ?/admin/snippet/edit/1 URI.
Wolfcms Wolf Cms 0.8.3.1
NA
CVE-2012-1898
Multiple cross-site scripting (XSS) vulnerabilities in wolfcms/admin/user/add in Wolf CMS 0.75 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) user[name], (2) user[email], or (3) user[username] parameters.
Ivano Binetti Wolf Cms
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
privilege escalation
CVE-2024-20696
CVE-2024-29829
CVE-2024-33999
CVE-2024-35646
physical
CVE-2024-24919
CVE-2024-31030
local users
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2