Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:feifeicms:feifeicms:4.1.190209:*:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2020-18418 |
A Cross site request forgery (CSRF) vulnerability was discovered in FeiFeiCMS v4.1.190209, which allows attackers to create administrator accounts via /index.php?s=Admin-Admin-Insert. Published: June 27, 2023; 3:15:09 PM -0400 |
V3.1: 8.8 HIGH V2.0:(not available) |
CVE-2019-9825 |
FeiFeiCMS 4.1.190209 allows remote attackers to upload and execute arbitrary PHP code by visiting index.php?s=Admin-Index to modify the set of allowable file extensions, as demonstrated by adding php to the default jpg,gif,png,jpeg setting, and then using the "add article" feature. Published: March 14, 2019; 6:29:01 PM -0400 |
V3.0: 9.8 CRITICAL V2.0: 7.5 HIGH |