Vulnerabilities > Laobancms > Low

DATE CVE VULNERABILITY TITLE RISK
2021-05-14 CVE-2020-18167 Cross-site Scripting vulnerability in Laobancms 2.0
Cross Site Scripting (XSS) in LAOBANCMS v2.0 allows remote attackers to execute arbitrary code by injecting commands into the "Homepage Introduction" field of component "admin/info.php?shuyu".
network
laobancms CWE-79
3.5
2021-05-12 CVE-2020-18165 Cross-site Scripting vulnerability in Laobancms 2.0
Cross Site Scripting (XSS) in LAOBANCMS v2.0 allows remote attackers to execute arbitrary code by injecting commands into the "Website SEO Keywords" field on the page "admin/info.php?shuyu".
network
laobancms CWE-79
3.5
2018-11-12 CVE-2018-19223 Cross-site Scripting vulnerability in Laobancms 2.0
An issue was discovered in LAOBANCMS 2.0.
network
laobancms CWE-79
3.5
2018-11-12 CVE-2018-19227 Cross-site Scripting vulnerability in Laobancms 2.0
An issue was discovered in LAOBANCMS 2.0.
network
laobancms CWE-79
3.5
2018-11-12 CVE-2018-19229 Cross-site Scripting vulnerability in Laobancms 2.0
An issue was discovered in LAOBANCMS 2.0.
network
laobancms CWE-79
3.5