Vulnerabilities > Frogcms Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-10-29 CVE-2020-25872 Path Traversal vulnerability in Frogcms Project Frogcms 0.9.5
A vulnerability exists within the FileManagerController.php function in FrogCMS 0.9.5 which allows an attacker to perform a directory traversal attack via a GET request urlencode parameter.
network
low complexity
frogcms-project CWE-22
4.0
2018-09-04 CVE-2018-16447 Cross-Site Request Forgery (CSRF) vulnerability in Frogcms Project Frogcms 0.9.5
Frog CMS 0.9.5 has admin/?/user/edit/1 CSRF.
6.8