Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
frog cms project frog cms 0.9.5 vulnerabilities and exploits
(subscribe to this query)
3.5
CVSSv2
CVE-2018-20680
Frog CMS 0.9.5 has XSS in the admin/?/page/edit/1 body field.
Frog Cms Project Frog Cms 0.9.5
3.5
CVSSv2
CVE-2018-16374
Frog CMS 0.9.5 has stored XSS via /admin/?/plugin/comment/settings.
Frog Cms Project Frog Cms 0.9.5
6.5
CVSSv2
CVE-2018-11098
An issue exists in Frog CMS 0.9.5. There is a file upload vulnerability via the admin/?/plugin/file_manager/upload URI, a similar issue to CVE-2014-4912.
Frog Cms Project Frog Cms 0.9.5
7.5
CVSSv2
CVE-2014-4912
An Arbitrary File Upload issue exists in Frog CMS 0.9.5 due to lack of extension validation.
Frog Cms Project Frog Cms 0.9.5
1 EDB exploit
4.3
CVSSv2
CVE-2019-6243
Frog CMS 0.9.5 allows XSS via the forgot password page (aka the /admin/?/login/forgot URI).
Frog Cms Project Frog Cms 0.9.5
4
CVSSv2
CVE-2018-16373
Frog CMS 0.9.5 has an Upload vulnerability that can create files via /admin/?/plugin/file_manager/save.
Frog Cms Project Frog Cms 0.9.5
1 Github repository
6.8
CVSSv2
CVE-2018-8908
An issue exists in /admin/?/user/add in Frog CMS 0.9.5. The application's add user functionality suffers from CSRF. A malicious user can craft an HTML page and use it to trick a victim into clicking on it; once executed, a malicious user will be created with admin privileges...
Frog Cms Project Frog Cms 0.9.5
1 EDB exploit
3.5
CVSSv2
CVE-2018-9991
Frog CMS 0.9.5 has XSS via the /admin/?/user/add Name or Username parameter.
Frog Cms Project Frog Cms 0.9.5
3.5
CVSSv2
CVE-2018-9992
Frog CMS 0.9.5 has XSS via the name field of a new "File" or "Directory" on the admin/?/plugin/file_manager/browse/ screen.
Frog Cms Project Frog Cms 0.9.5
3.5
CVSSv2
CVE-2018-20448
Frog CMS 0.9.5 has XSS via the Database name field to the /install/index.php URI.
Frog Cms Project Frog Cms 0.9.5
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49333
CVE-2024-33901
CVE-2024-36001
CVE-2024-2835
firewall
XPath injection
authentication bypass
CVE-2024-22120
CVE-2024-32002
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »