Vulnerabilities > Aikcms > Aikcms > 2.0

DATE CVE VULNERABILITY TITLE RISK
2021-08-12 CVE-2020-18462 Unrestricted Upload of File with Dangerous Type vulnerability in Aikcms 2.0
File Upload vulnerabilty in AikCms v2.0.0 in poster_edit.php because the background file management office does not verify the uploaded file.
network
low complexity
aikcms CWE-434
6.5
2021-08-12 CVE-2020-18463 Cross-Site Request Forgery (CSRF) vulnerability in Aikcms 2.0
Cross Site Request Forgery (CSRF) vulnerability exists in v2.0.0 in video_list.php, which can let a malicious user delete a video message.
network
aikcms CWE-352
3.5
2021-08-12 CVE-2020-18464 Cross-Site Request Forgery (CSRF) vulnerability in Aikcms 2.0
Cross Site Request Forgery (CSRF) vulnerability in AikCms 2.0.0 in video_list.php, which can let a malicious user delete movie information.
network
aikcms CWE-352
3.5
2019-04-27 CVE-2019-11568 Unrestricted Upload of File with Dangerous Type vulnerability in Aikcms 2.0
An issue was discovered in AikCms v2.0.
network
aikcms CWE-434
6.8
2019-04-27 CVE-2019-11567 SQL Injection vulnerability in Aikcms 2.0
An issue was discovered in AikCms v2.0.
network
low complexity
aikcms CWE-89
6.5