Vulnerabilities > Elitecms > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-11 | CVE-2022-40361 | Cross-site Scripting vulnerability in Elitecms Elite CMS 1.2.11 Cross Site Scripting Vulnerability in Elite CRM v1.2.11 allows attacker to execute arbitrary code via the language parameter to the /ngs/login endpoint. | 6.1 |
2022-06-02 | CVE-2022-30804 | Path Traversal vulnerability in Elitecms Elite CMS 1.01 elitecms v1.01 is vulnerable to Delete any file via /admin/delete_image.php?file=. | 6.5 |
2022-02-01 | CVE-2022-24218 | Unspecified vulnerability in Elitecms Elite CMS 1.0 An issue in /admin/delete_image.php of eliteCMS v1.0 allows attackers to delete arbitrary files. | 6.4 |
2019-07-03 | CVE-2018-12250 | SQL Injection vulnerability in Elitecms Elite CMS 2.01 An issue was discovered in Elite CMS Pro 2.01. | 6.5 |