Vulnerabilities > Teacms Project

DATE CVE VULNERABILITY TITLE RISK
2023-04-20 CVE-2023-27090 Cross-site Scripting vulnerability in Teacms Project Teacms 4.0
Cross Site Scripting vulnerability found in TeaCMS storage allows attacker to cause a leak of sensitive information via the article title parameter.
network
low complexity
teacms-project CWE-79
5.4
2023-04-04 CVE-2023-27091 Improper Authentication vulnerability in Teacms Project Teacms 2.3.3
An unauthorized access issue found in XiaoBingby TeaCMS 2.3.3 allows attackers to escalate privileges via the id and keywords parameter(s).
network
low complexity
teacms-project CWE-287
7.2
2023-03-24 CVE-2023-1616 Cross-site Scripting vulnerability in Teacms Project Teacms 2.0/2.0.1/2.0.2
A vulnerability was found in XiaoBingBy TeaCMS up to 2.0.2.
network
low complexity
teacms-project CWE-79
5.4
2023-03-18 CVE-2023-1483 SQL Injection vulnerability in Teacms Project Teacms 2.0/2.0.1/2.0.2
A vulnerability has been found in XiaoBingBy TeaCMS up to 2.0.2 and classified as critical.
network
low complexity
teacms-project CWE-89
critical
9.8
2023-03-14 CVE-2023-1398 Path Traversal vulnerability in Teacms Project Teacms 2.0
A vulnerability classified as critical was found in XiaoBingBy TeaCMS 2.0.
network
low complexity
teacms-project CWE-22
8.8