Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Six Offene Systeme Gmbh Subscribe
Filtered by product Sixcms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-3050 1 Six Offene Systeme Gmbh 1 Sixcms 2018-10-18 2.6 LOW N/A
Directory traversal vulnerability in detail.php in SixCMS 6.0, and other versions before 6.0.6patch2, allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the template parameter.
CVE-2006-3051 1 Six Offene Systeme Gmbh 1 Sixcms 2018-10-18 5.1 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in list.php in SixCMS 6.0, and other versions before 6.0.6patch2, allows remote attackers to inject arbitrary script code or HTML via the page parameter.