Vulnerabilities > Concretecms > Concrete CMS > 5.4.1.1

DATE CVE VULNERABILITY TITLE RISK
2020-01-14 CVE-2011-3183 Cross-site Scripting vulnerability in Concretecms Concrete CMS 5.4.1.1
A Cross-Site Scripting (XSS) vulnerability exists in the rcID parameter in Concrete CMS 5.4.1.1 and earlier.
network
low complexity
concretecms CWE-79
6.1
2018-02-26 CVE-2017-18195 Unspecified vulnerability in Concretecms Concrete CMS
An issue was discovered in tools/conversations/view_ajax.php in Concrete5 before 8.3.0.
network
low complexity
concretecms
5.3