Vulnerabilities > Dbhcms Project > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-08-24 | CVE-2020-19891 | Out-of-bounds Write vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has an Arbitrary file write vulnerability in dbhcms\mod\mod.editor.php $_POST['updatefile'] is filename and $_POST['tinymce_content'] is file content, there is no filter function for security. | 6.5 |
2020-08-24 | CVE-2020-19890 | Information Exposure vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has an Arbitrary file read vulnerability in dbhcms\mod\mod.editor.php $_GET['file'] is filename,and as there is no filter function for security, you can read any file's content. | 4.0 |
2020-08-24 | CVE-2020-19889 | Cross-Site Request Forgery (CSRF) vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has no CSRF protection mechanism,as demonstrated by CSRF for index.php?dbhcms_pid=-70 can add a user. | 6.8 |
2020-08-24 | CVE-2020-19888 | Incorrect Authorization vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has an unauthorized operation vulnerability because there's no access control at line 175 of dbhcms\page.php for empty cache operation. | 4.3 |
2020-08-24 | CVE-2020-19886 | Cross-Site Request Forgery (CSRF) vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has no CSRF protection mechanism,as demonstrated by CSRF for an /index.php?dbhcms_pid=-80&deletemenu=9 can delete any menu. | 4.3 |
2020-08-24 | CVE-2020-19880 | Cross-site Scripting vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has a stored xss vulnerability as there is no htmlspecialchars function form 'Name' in dbhcms\types.php, A remote unauthenticated attacker can exploit this vulnerability to hijack other users. | 4.3 |
2020-08-24 | CVE-2020-19879 | Cross-site Scripting vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has a stored xss vulnerability as there is no security filter of $_GET['dbhcms_pid'] variable in dbhcms\page.php line 107, | 4.3 |
2020-08-24 | CVE-2020-19878 | Information Exposure vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has a sensitive information leaks vulnerability as there is no security access control in /dbhcms/ext/news/ext.news.be.php, A remote unauthenticated attacker can exploit this vulnerability to get path information. | 5.0 |
2020-08-24 | CVE-2020-19877 | Path Traversal vulnerability in Dbhcms Project Dbhcms 1.2.0 DBHcms v1.2.0 has a directory traversal vulnerability as there is no directory control function in directory /dbhcms/. | 5.0 |