Vulnerabilities > SEM CMS > Semcms > 1.1

DATE CVE VULNERABILITY TITLE RISK
2022-10-28 CVE-2021-38728 Cross-site Scripting vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to Cross Site Scripting (XSS) via Ant_M_Coup.php.
network
low complexity
sem-cms CWE-79
6.1
2022-10-28 CVE-2021-38729 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Plist.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38730 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Info.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38731 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Zekou.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38732 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL via Ant_Message.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38733 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_BlogCat.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38734 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Menu.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38736 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS Shop V 1.1 is vulnerable to SQL Injection via Ant_Global.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38737 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS v 1.1 is vulnerable to SQL Injection via Ant_Pro.php.
network
low complexity
sem-cms CWE-89
critical
9.8