Vulnerabilities > Ciamos

DATE CVE VULNERABILITY TITLE RISK
2009-12-02 CVE-2009-4156 Code Injection vulnerability in Ciamos CMS 0.9/0.9.2
PHP remote file inclusion vulnerability in modules/pms/index.php in Ciamos CMS 0.9.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the module_path parameter.
network
low complexity
ciamos CWE-94
7.5
2006-10-12 CVE-2006-5257 Remote File Include vulnerability in Ciamos CMS Config.PHP
PHP remote file inclusion vulnerability in modules/forum/include/config.php in Ciamos Content Management System (CMS) 0.9.6b and earlier allows remote attackers to execute arbitrary PHP code via a URL in the module_cache_path parameter.
network
low complexity
ciamos
7.5