Vulnerabilities > Feehi > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-12-15 | CVE-2020-20589 | Cross-site Scripting vulnerability in Feehi Feehicms 2.0.8 Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang attribute of an html tag. | 6.1 |
2022-12-15 | CVE-2020-36607 | Cross-site Scripting vulnerability in Feehi Feehicms 2.0.8 Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang attribute of an html tag. | 6.1 |
2022-12-15 | CVE-2021-36572 | Cross-site Scripting vulnerability in Feehi Feehicms Cross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via the user name field of the login page. | 6.1 |
2022-12-15 | CVE-2021-36573 | Cross-site Scripting vulnerability in Feehi Feehicms File Upload vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via crafted image upload. | 5.4 |
2022-12-15 | CVE-2022-40000 | Cross-site Scripting vulnerability in Feehi Feehicms 2.1.1 Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbitrary code via the username field of the admin log in page. | 5.4 |
2022-12-15 | CVE-2022-40001 | Cross-site Scripting vulnerability in Feehi Feehicms 2.1.1 Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbitrary code via the title field of the create article page. | 5.4 |
2022-12-15 | CVE-2022-40002 | Cross-site Scripting vulnerability in Feehi Feehicms 2.1.1 Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbirtary code via the callback parameter to /cms/notify. | 5.4 |
2022-12-15 | CVE-2022-40373 | Cross-site Scripting vulnerability in Feehi Feehicms 2.1.1 Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.1.1 allows remote attackers to run arbitrary code via upload of crafted XML file. | 5.4 |
2022-11-16 | CVE-2022-4014 | Cross-Site Request Forgery (CSRF) vulnerability in Feehi Feehicms A vulnerability, which was classified as problematic, has been found in FeehiCMS. | 4.3 |
2022-11-09 | CVE-2022-43320 | Cross-site Scripting vulnerability in Feehi Feehicms 2.1.1 FeehiCMS v2.1.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the id parameter at /web/admin/index.php?r=log%2Fview-layer. | 6.1 |