Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
elite cms vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-42331
A file upload vulnerability in EliteCMS v1.01 allows a remote malicious user to execute arbitrary code via the manage_uploads.php component.
Elitecms Elite Cms 1.01
7.5
CVSSv2
CVE-2021-46093
eliteCMS v1.0 is vulnerable to Insecure Permissions via manage_uploads.php.
Elitecms Elite Cms 1.0
NA
CVE-2022-40361
Cross Site Scripting Vulnerability in Elite CRM v1.2.11 allows malicious user to execute arbitrary code via the language parameter to the /ngs/login endpoint.
Elitecms Elite Cms 1.2.11
6.4
CVSSv2
CVE-2022-24218
An issue in /admin/delete_image.php of eliteCMS v1.0 allows malicious users to delete arbitrary files.
Elitecms Elite Cms 1.0
7.5
CVSSv2
CVE-2022-24219
eliteCMS v1.0 exists to contain a SQL injection vulnerability via /admin/edit_page.php.
Elitecms Elite Cms 1.0
7.5
CVSSv2
CVE-2022-24220
eliteCMS v1.0 exists to contain a SQL injection vulnerability via /admin/edit_post.php.
Elitecms Elite Cms 1.0
7.5
CVSSv2
CVE-2022-24221
eliteCMS v1.0 exists to contain a SQL injection vulnerability via /admin/functions/functions.php.
Elitecms Elite Cms 1.0
7.5
CVSSv2
CVE-2022-24222
eliteCMS v1.0 exists to contain a SQL injection vulnerability via /admin/edit_user.php.
Elitecms Elite Cms 1.0
5.5
CVSSv2
CVE-2022-30804
elitecms v1.01 is vulnerable to Delete any file via /admin/delete_image.php?file=.
Elitecms Elite Cms 1.01
7.5
CVSSv2
CVE-2022-30808
elitecms 1.0.1 is vulnerable to Arbitrary code execution via admin/manage_uploads.php.
Elitecms Elite Cms 1.01
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5248
CVE-2024-3110
CVE-2024-5552
CVE-2024-29415
HTML injection
CVE-2024-3095
TCP
type confusion
CVE-2024-1800
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »