Vulnerabilities > Concretecms > Concrete CMS > 8.0.3

DATE CVE VULNERABILITY TITLE RISK
2021-09-27 CVE-2021-40108 Cross-Site Request Forgery (CSRF) vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-352
8.8
2021-09-27 CVE-2021-40109 Server-Side Request Forgery (SSRF) vulnerability in Concretecms Concrete CMS
A SSRF issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-918
6.4
2021-09-27 CVE-2021-40097 Path Traversal vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-22
8.8
2021-09-27 CVE-2021-40098 Path Traversal vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-22
critical
9.8
2021-09-27 CVE-2021-40103 Path Traversal vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-22
7.5
2021-09-27 CVE-2021-40104 Unspecified vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms
7.5
2021-09-27 CVE-2021-40105 Cross-site Scripting vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-79
6.1
2021-09-27 CVE-2021-40106 Cross-site Scripting vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-79
6.1
2021-09-24 CVE-2021-40099 Unspecified vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms
7.2
2021-09-24 CVE-2021-40100 Cross-site Scripting vulnerability in Concretecms Concrete CMS
An issue was discovered in Concrete CMS through 8.5.5.
network
low complexity
concretecms CWE-79
5.4