Vulnerabilities > Feehi

DATE CVE VULNERABILITY TITLE RISK
2024-08-29 CVE-2024-8296 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-29 CVE-2024-8295 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability has been found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-29 CVE-2024-8294 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability, which was classified as critical, was found in FeehiCMS up to 2.1.1.
network
low complexity
feehi CWE-434
critical
9.8
2023-06-20 CVE-2020-21174 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms 2.0.7.1
File Upload vulenrability in liufee CMS v.2.0.7.1 allows a remote attacker to execute arbitrary code via the image suffix function.
network
low complexity
feehi CWE-434
critical
9.8
2023-06-20 CVE-2020-21489 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms 2.0.8
File Upload vulnerability in Feehicms v.2.0.8 allows a remote attacker to execute arbitrary code via the /admin/index.php?r=admin-user%2Fupdate-self component.
network
low complexity
feehi CWE-434
critical
9.8
2022-12-15 CVE-2020-20589 Cross-site Scripting vulnerability in Feehi Feehicms 2.0.8
Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang attribute of an html tag.
network
low complexity
feehi CWE-79
6.1
2022-12-15 CVE-2020-36607 Cross-site Scripting vulnerability in Feehi Feehicms 2.0.8
Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang attribute of an html tag.
network
low complexity
feehi CWE-79
6.1
2022-12-15 CVE-2021-36572 Cross-site Scripting vulnerability in Feehi Feehicms
Cross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via the user name field of the login page.
network
low complexity
feehi CWE-79
6.1
2022-12-15 CVE-2021-36573 Cross-site Scripting vulnerability in Feehi Feehicms
File Upload vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via crafted image upload.
network
low complexity
feehi CWE-79
5.4
2022-12-15 CVE-2022-40000 Cross-site Scripting vulnerability in Feehi Feehicms 2.1.1
Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbitrary code via the username field of the admin log in page.
network
low complexity
feehi CWE-79
5.4