Vulnerabilities > Juzaweb
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-08-06 | CVE-2024-7551 | Path Traversal vulnerability in Juzaweb CMS A vulnerability was found in juzaweb CMS up to 3.4.2. | 4.9 |
2024-01-09 | CVE-2023-46906 | Unspecified vulnerability in Juzaweb CMS juzaweb <= 3.4 is vulnerable to Incorrect Access Control, resulting in an application outage after a 500 HTTP status code. | 4.9 |
2023-10-28 | CVE-2023-46467 | Cross-site Scripting vulnerability in Juzaweb CMS Cross Site Scripting vulnerability in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via a crafted payload to the username parameter of the registration page. | 5.4 |
2023-10-28 | CVE-2023-46468 | Injection vulnerability in Juzaweb CMS An issue in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via a crafted file to the custom plugin function. | 7.8 |