Vulnerabilities > Pragyan CMS Project > Pragyan CMS

DATE CVE VULNERABILITY TITLE RISK
2017-09-19 CVE-2017-14601 SQL Injection vulnerability in Pragyan CMS Project Pragyan CMS 3.0
Pragyan CMS v3.0 is vulnerable to a Boolean-based SQL injection in cms/admin.lib.php via $_GET['forwhat'], resulting in Information Disclosure.
network
low complexity
pragyan-cms-project CWE-89
4.0
2017-09-19 CVE-2017-14600 SQL Injection vulnerability in Pragyan CMS Project Pragyan CMS 3.0
Pragyan CMS v3.0 is vulnerable to an Error-Based SQL injection in cms/admin.lib.php via $_GET['del_black'], resulting in Information Disclosure.
network
low complexity
pragyan-cms-project CWE-89
4.0
2017-09-07 CVE-2015-4627 SQL Injection vulnerability in Pragyan CMS Project Pragyan CMS 3.0
SQL injection vulnerability in Pragyan CMS 3.0.
network
low complexity
pragyan-cms-project CWE-89
7.5
2015-02-12 CVE-2015-1471 SQL Injection vulnerability in Pragyan CMS Project Pragyan CMS 3.0
SQL injection vulnerability in userprofile.lib.php in Pragyan CMS 3.0 allows remote attackers to execute arbitrary SQL commands via the user parameter to the default URI.
network
low complexity
pragyan-cms-project CWE-89
7.5
2013-01-12 CVE-2012-6500 Path Traversal vulnerability in Pragyan CMS Project Pragyan CMS
Directory traversal vulnerability in download.lib.php in Pragyan CMS 3.0 and earlier allows remote attackers to read arbitrary files via a ..
network
low complexity
pragyan-cms-project CWE-22
5.0
2009-04-29 CVE-2009-1480 SQL Injection vulnerability in Pragyan CMS Project Pragyan CMS 2.6.4
SQL injection vulnerability in index.php Pragyan CMS 2.6.4 allows remote attackers to execute arbitrary SQL commands via the fileget parameter in a view action and other unspecified vectors.
network
low complexity
pragyan-cms-project CWE-89
7.5