Vulnerabilities > Catfish CMS > Catfish Blog

DATE CVE VULNERABILITY TITLE RISK
2018-10-29 CVE-2018-18736 Cross-site Scripting vulnerability in Catfish-Cms Catfish Blog 2.0.33
An XSS issue was discovered in catfish blog 2.0.33, related to "write source code."
network
low complexity
catfish-cms CWE-79
5.4
2018-10-29 CVE-2018-18735 Cross-Site Request Forgery (CSRF) vulnerability in Catfish-Cms Catfish Blog 2.0.33
A CSRF issue was discovered in admin/Index/tiquan in catfish blog 2.0.33.
network
low complexity
catfish-cms CWE-352
8.8