Vulnerabilities > Dscms Project

DATE CVE VULNERABILITY TITLE RISK
2022-04-28 CVE-2022-28114 Unspecified vulnerability in Dscms Project Dscms 3.0
DSCMS v3.0 was discovered to contain an arbitrary file deletion vulnerability via /controller/Adv.php.
network
low complexity
dscms-project
critical
9.1
2018-10-15 CVE-2018-18317 Cross-Site Request Forgery (CSRF) vulnerability in Dscms Project Dscms 1.1
DESHANG DSCMS 1.1 has CSRF via the public/index.php/admin/admin/add.html URI.
network
low complexity
dscms-project CWE-352
8.8