Vulnerabilities > Wbce > High

DATE CVE VULNERABILITY TITLE RISK
2023-08-03 CVE-2023-38947 Unrestricted Upload of File with Dangerous Type vulnerability in Wbce CMS 1.6.1
An arbitrary file upload vulnerability in the /languages/install.php component of WBCE CMS v1.6.1 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
wbce CWE-434
7.2
2023-04-18 CVE-2023-29855 Command Injection vulnerability in Wbce CMS 1.5.3
WBCE CMS 1.5.3 has a command execution vulnerability via admin/languages/install.php.
network
low complexity
wbce CWE-77
7.2
2022-11-25 CVE-2022-45039 Unrestricted Upload of File with Dangerous Type vulnerability in Wbce CMS 1.5.4
An arbitrary file upload vulnerability in the Server Settings module of WBCE CMS v1.5.4 allows attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
wbce CWE-434
7.2
2022-11-15 CVE-2022-4006 Improper Restriction of Excessive Authentication Attempts vulnerability in Wbce CMS
A vulnerability, which was classified as problematic, has been found in WBCE CMS.
network
low complexity
wbce CWE-307
7.5
2021-12-09 CVE-2021-3817 SQL Injection vulnerability in Wbce CMS
wbce_cms is vulnerable to Improper Neutralization of Special Elements used in an SQL Command
network
low complexity
wbce CWE-89
7.5