Vulnerabilities > SEM CMS > Semcms

DATE CVE VULNERABILITY TITLE RISK
2023-05-05 CVE-2023-30090 Unrestricted Upload of File with Dangerous Type vulnerability in Sem-Cms Semcms 4.2
Semcms Shop v4.2 was discovered to contain an arbitrary file uplaod vulnerability via the component SEMCMS_Upfile.php.
network
low complexity
sem-cms CWE-434
critical
9.8
2022-10-28 CVE-2021-38217 SQL Injection vulnerability in Sem-Cms Semcms 1.2
SEMCMS v 1.2 is vulnerable to SQL Injection via SEMCMS_User.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38728 Cross-site Scripting vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to Cross Site Scripting (XSS) via Ant_M_Coup.php.
network
low complexity
sem-cms CWE-79
6.1
2022-10-28 CVE-2021-38729 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Plist.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38730 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Info.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38731 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Zekou.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38732 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL via Ant_Message.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38733 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_BlogCat.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38734 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Menu.php.
network
low complexity
sem-cms CWE-89
critical
9.8
2022-10-28 CVE-2021-38736 SQL Injection vulnerability in Sem-Cms Semcms 1.1
SEMCMS Shop V 1.1 is vulnerable to SQL Injection via Ant_Global.php.
network
low complexity
sem-cms CWE-89
critical
9.8