Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
toenda software development toendacms 0.6.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-3362
Unrestricted file upload vulnerability in connectors/php/connector.php in FCKeditor mcpuk file manager, as used in (1) Geeklog 1.4.0 up to and including 1.4.0sr3, (2) toendaCMS 1.0.0 Shizouka Stable and previous versions, (3) WeBid 0.5.4, and possibly other products, when install...
Geeklog Geeklog 1.4.0 Sr3
Toenda Software Development Toendacms 0.6.1
Geeklog Geeklog 1.4.0 Sr1
Geeklog Geeklog 1.4.0 Sr2
Geeklog Geeklog 1.4.0
Toenda Software Development Toendacms 1.0
Toenda Software Development Toendacms 0.6.2
Toenda Software Development Toendacms 0.7
1 EDB exploit
NA
CVE-2006-2799
Cross-site scripting (XSS) vulnerability in content_footer.php in toendaCMS 0.7.0 allows remote malicious users to inject arbitrary web scripts or HTML via the print_url variable. NOTE: the provenance of this information is unknown; the details are obtained solely from third part...
Toenda Software Development Toendacms 0.6 Beta 2
Toenda Software Development Toendacms 0.6 Beta 3
Toenda Software Development Toendacms 0.6.2.1
Toenda Software Development Toendacms 0.6 Beta 1
Toenda Software Development Toendacms 0.6
Toenda Software Development Toendacms 0.6.1
Toenda Software Development Toendacms 0.6 Pre-beta
Toenda Software Development Toendacms
NA
CVE-2005-4422
Unrestricted file upload vulnerability in toendaCMS prior to 0.6.2 Stable allows remote authenticated administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in data/images/albums.
Toenda Software Development Toendacms 0.6.1
NA
CVE-2005-3550
Directory traversal vulnerability in admin.php in toendaCMS prior to 0.6.2 allows remote malicious users to access arbitrary files via a .. (dot dot) in the id_user parameter.
Toenda Software Development Toendacms
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started