Vulnerabilities > Mozilo > Mozilocms > 2.0

DATE CVE VULNERABILITY TITLE RISK
2022-02-03 CVE-2022-23357 Path Traversal vulnerability in Mozilo Mozilocms 2.0
mozilo2.0 was discovered to be vulnerable to directory traversal attacks via the parameter curent_dir.
network
low complexity
mozilo CWE-22
critical
9.1
2021-07-09 CVE-2020-25394 Cross-site Scripting vulnerability in Mozilo Mozilocms 2.0
A stored cross site scripting (XSS) vulnerability in moziloCMS 2.0 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Content" parameter.
network
mozilo CWE-79
3.5