Vulnerabilities > Monocms

DATE CVE VULNERABILITY TITLE RISK
2021-01-07 CVE-2020-28672 Unspecified vulnerability in Monocms 1.0
MonoCMS Blog 1.0 is affected by incorrect access control that can lead to remote arbitrary code execution.
network
low complexity
monocms
critical
9.0
2020-10-07 CVE-2020-25985 Path Traversal vulnerability in Monocms 1.0
MonoCMS Blog 1.0 is affected by: Arbitrary File Deletion.
network
low complexity
monocms CWE-22
5.5
2020-10-06 CVE-2020-25987 Information Exposure Through Log Files vulnerability in Monocms 1.0
MonoCMS Blog 1.0 stores hard-coded admin hashes in the log.xml file in the source files for MonoCMS Blog.
network
low complexity
monocms CWE-532
5.0
2020-10-06 CVE-2020-25986 Cross-Site Request Forgery (CSRF) vulnerability in Monocms 1.0
A Cross Site Request Forgery (CSRF) vulnerability in MonoCMS Blog 1.0 allows attackers to change the password of a user.
network
monocms CWE-352
4.3