Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
aerocms project vulnerabilities and exploits
(subscribe to this query)
4.8
CVSSv3
CVE-2022-27062
AeroCMS v0.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via add_post.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Post Title text field....
Aerocms Project Aerocms 0.0.1
1 Github repository available
6.1
CVSSv3
CVE-2022-27063
AeroCMS v0.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via view_all_comments.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Comments text field....
Aerocms Project Aerocms 0.0.1
1 Github repository available
4.9
CVE-2022-45529
AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the post_category_id parameter at \admin\includes\edit_post.php. This vulnerability allows attackers to access database information....
Aerocms Project Aerocms 0.0.1
1 Github repository available
7.5
CVE-2022-45329
AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the Search parameter. This vulnerability allows attackers to access database information....
Aerocms Project Aerocms 0.0.1
1 Github repository available
6.5
CVE-2022-38812
AeroCMS 0.1.1 is vulnerable to SQL Injection via the author parameter....
Aerocms Project Aerocms 0.1.1
1 Github repository available
6.1
CVE-2022-46061
AeroCMS v0.0.1 is vulnerable to ClickJacking....
Aerocms Project Aerocms 0.0.1
1 Github repository available
7.2
CVE-2022-46135
In AeroCms v0.0.1, there is an arbitrary file upload vulnerability at /admin/posts.php?source=edit_post , through which we can upload webshell and control the web server....
Aerocms Project Aerocms 0.0.1
1 Github repository available
6.5
CVE-2022-46059
AeroCMS v0.0.1 is vulnerable to Cross Site Request Forgery (CSRF)....
Aerocms Project Aerocms 0.0.1
1 Github repository available
7.2
CVE-2022-46051
The approve parameter from the AeroCMS-v0.0.1 CMS system is vulnerable to SQL injection attacks....
Aerocms Project Aerocms 0.0.1
1 Github repository available
4.9
CVE-2022-45535
AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the edit parameter at \admin\categories.php. This vulnerability allows attackers to access database information....
Aerocms Project Aerocms 0.0.1
1 Github repository available
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-45441
arbitrary
CVE-2022-31254
CVE-2023-0719
CVE-2023-25136
CVE-2023-0744
CVE-2022-0847
unspecified
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »