Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Luocms Project Subscribe
Filtered by product Luocms
Total 10 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-24607 1 Luocms Project 1 Luocms 2022-03-17 7.5 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by SQL Injection in /admin/news/news_ok.php.
CVE-2022-24606 1 Luocms Project 1 Luocms 2022-03-17 7.5 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by SQL Injection in /admin/news/sort_ok.php.
CVE-2022-24609 1 Luocms Project 1 Luocms 2022-03-17 10.0 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by an incorrect access control vulnerability. Through /admin/templates/template_manage.php, an attacker can write an arbitrary shell file.
CVE-2022-24605 1 Luocms Project 1 Luocms 2022-03-17 7.5 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by SQL Injection in /admin/link/link_ok.php.
CVE-2022-24604 1 Luocms Project 1 Luocms 2022-03-17 7.5 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by SQL Injection in /admin/link/link_mod.php.
CVE-2022-24600 1 Luocms Project 1 Luocms 2022-03-17 7.5 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by SQL Injection through /admin/login.php. An attacker can log in to the background through SQL injection statements.
CVE-2022-24603 1 Luocms Project 1 Luocms 2022-03-17 7.5 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by SQL Injection in /admin/news/sort_mod.php.
CVE-2022-24602 1 Luocms Project 1 Luocms 2022-03-17 7.5 HIGH 9.8 CRITICAL
Luocms v2.0 is affected by SQL Injection in /admin/news/news_mod.php.
CVE-2022-24601 1 Luocms Project 1 Luocms 2022-03-17 5.0 MEDIUM 7.5 HIGH
Luocms v2.0 is affected by SQL Injection in /admin/manager/admin_mod.php. An attacker can obtain sensitive information through SQL injection statements.
CVE-2022-24608 1 Luocms Project 1 Luocms 2022-03-17 4.3 MEDIUM 6.1 MEDIUM
Luocms v2.0 is affected by Cross Site Scripting (XSS) in /admin/news/sort_add.php and /inc/function.php.