Vulnerabilities > SEM CMS > Semcms > 3.4

DATE CVE VULNERABILITY TITLE RISK
2025-01-08 CVE-2024-13193 SQL Injection vulnerability in Sem-Cms Semcms
A vulnerability has been found in SEMCMS up to 4.8 and classified as critical.
network
low complexity
sem-cms CWE-89
4.9
2024-05-07 CVE-2024-4595 SQL Injection vulnerability in Sem-Cms Semcms
A vulnerability has been found in SEMCMS up to 4.8 and classified as critical.
network
low complexity
sem-cms CWE-89
6.5
2018-10-30 CVE-2018-18841 Cross-site Scripting vulnerability in Sem-Cms Semcms 3.4
XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexkey parameter.
network
low complexity
sem-cms CWE-79
4.8
2018-10-30 CVE-2018-18840 Cross-site Scripting vulnerability in Sem-Cms Semcms 3.4
XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexmetatit parameter.
network
low complexity
sem-cms CWE-79
5.4
2018-10-29 CVE-2018-18783 Cross-site Scripting vulnerability in Sem-Cms Semcms 3.4
XSS was discovered in SEMCMS V3.4 via the semcms_remail.php?type=ok umail parameter.
network
low complexity
sem-cms CWE-79
6.1
2018-10-29 CVE-2018-18745 Cross-site Scripting vulnerability in Sem-Cms Semcms 3.4
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Menu.php?lgid=1 during editing.
network
low complexity
sem-cms CWE-79
4.8
2018-10-29 CVE-2018-18744 Cross-site Scripting vulnerability in Sem-Cms Semcms 3.4
An XSS issue was discovered in SEMCMS 3.4 via the fifth text box to the admin/SEMCMS_Main.php URI.
network
low complexity
sem-cms CWE-79
4.8
2018-10-29 CVE-2018-18743 Cross-site Scripting vulnerability in Sem-Cms Semcms 3.4
An XSS issue was discovered in SEMCMS 3.4 via the second text field to the admin/SEMCMS_Categories.php?pid=1&lgid=1 URI.
network
low complexity
sem-cms CWE-79
4.8
2018-10-29 CVE-2018-18742 Cross-Site Request Forgery (CSRF) vulnerability in Sem-Cms Semcms 3.4
A CSRF issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_User.php?Class=add&CF=user URI.
network
low complexity
sem-cms CWE-352
8.8
2018-10-29 CVE-2018-18741 Cross-site Scripting vulnerability in Sem-Cms Semcms 3.4
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Download.php?lgid=1 during editing.
network
low complexity
sem-cms CWE-79
4.8