Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Bosscms Subscribe
Filtered by product Bosscms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-44937 1 Bosscms 1 Bosscms 2022-12-01 N/A 6.5 MEDIUM
Bosscms v2.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Add function under the Administrator List module.
CVE-2022-28606 1 Bosscms 1 Bosscms 2022-05-12 7.5 HIGH 9.8 CRITICAL
An arbitrary file upload vulnerability exists in Wenzhou Huoyin Information Technology Co., Ltd. BossCMS 1.0, which can be exploited by an attacker to gain control of the server.