Vulnerabilities > Waimai Super CMS Project > Waimai Super CMS > 20150505

DATE CVE VULNERABILITY TITLE RISK
2021-10-05 CVE-2020-21503 Exposure of Resource to Wrong Sphere vulnerability in Waimai Super CMS Project Waimai Super CMS 20150505
waimai Super Cms 20150505 has a logic flaw allowing attackers to modify a price, before form submission, by observing data in a packet capture.
network
low complexity
waimai-super-cms-project CWE-668
5.0
2021-10-05 CVE-2020-21504 Cross-site Scripting vulnerability in Waimai Super CMS Project Waimai Super CMS 20150505
waimai Super Cms 20150505 contains a cross-site scripting (XSS) vulnerability in the component /admin.php?&m=Public&a=login.
4.3
2021-10-05 CVE-2020-21505 Cross-site Scripting vulnerability in Waimai Super CMS Project Waimai Super CMS 20150505
waimai Super Cms 20150505 contains a cross-site scripting (XSS) vulnerability in the component /admin.php/Link/addsave.
4.3
2021-10-05 CVE-2020-21506 Cross-site Scripting vulnerability in Waimai Super CMS Project Waimai Super CMS 20150505
waimai Super Cms 20150505 contains a cross-site scripting (XSS) vulnerability in the component /admin.php?m=Config&a=add.
4.3