Vulnerabilities > Phpwcms > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-02-03 CVE-2021-36424 Code Injection vulnerability in PHPwcms
An issue discovered in phpwcms 1.9.25 allows remote attackers to run arbitrary code via DB user field during installation.
network
low complexity
phpwcms CWE-94
critical
9.8
2023-01-07 CVE-2021-4301 SQL Injection vulnerability in PHPwcms
A vulnerability was found in slackero phpwcms up to 1.9.26 and classified as critical.
network
low complexity
phpwcms CWE-89
critical
9.8
2021-06-24 CVE-2020-21784 Code Injection vulnerability in PHPwcms 1.9.13
phpwcms 1.9.13 is vulnerable to Code Injection via /phpwcms/setup/setup.php.
network
low complexity
phpwcms CWE-94
critical
9.8