Vulnerabilities > Frogcms Project > Low

DATE CVE VULNERABILITY TITLE RISK
2018-12-31 CVE-2018-19844 Cross-site Scripting vulnerability in Frogcms Project Frogcms 0.9.5
FROG CMS 0.9.5 has XSS via the admin/?/snippet/add name parameter, which is mishandled during an edit action, a related issue to CVE-2018-10319.
3.5
2018-05-08 CVE-2018-10806 Cross-Site Request Forgery (CSRF) vulnerability in Frogcms Project Frogcms 0.9.5
An issue was discovered in Frog CMS 0.9.5.
3.5
2018-04-30 CVE-2018-10570 Cross-site Scripting vulnerability in Frogcms Project Frogcms 0.9.5
Frog CMS 0.9.5 has XSS in /install/index.php via the ['config']['admin_username'] field.
3.5
2018-04-24 CVE-2018-10321 Cross-site Scripting vulnerability in Frogcms Project Frogcms 0.9.5
Frog CMS 0.9.5 has a stored Cross Site Scripting Vulnerability via "Admin Site title" in Settings.
3.5
2018-04-24 CVE-2018-10318 Cross-site Scripting vulnerability in Frogcms Project Frogcms 0.9.5
Frog CMS 0.9.5 has XSS via the admin/?/page/edit page[keywords] parameter, aka Edit Page Metadata.
3.5
2018-04-24 CVE-2018-10319 Cross-site Scripting vulnerability in Frogcms Project Frogcms 0.9.5
Frog CMS 0.9.5 has XSS via the admin/?/snippet/edit snippet[name] parameter, aka Edit Snippet.
3.5
2018-04-24 CVE-2018-10320 Cross-site Scripting vulnerability in Frogcms Project Frogcms 0.9.5
Frog CMS 0.9.5 has XSS via the admin/?/layout/edit layout[name] parameter, aka Edit Layout.
3.5