Ferretcms-project
4 CVEs tracked since 2015. Since Jan 2015, none of them reached CISA KEV.
Ferretcms-project CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2015-01 | 4 | 0 |
Products
The products that kept showing up in Ferretcms-project's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 4 most recently published vulnerabilities affecting Ferretcms-project.
- CVE-2015-1374Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in ferretCMS 1.0.4-alpha allow remote attackers to hijack the authentication of administrators for requests that conduct (1) ...6.8
- CVE-2015-1373Multiple cross-site scripting (XSS) vulnerabilities in admin.php in ferretCMS 1.0.4-alpha allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter in a search requ...4.3
- CVE-2015-1371Unrestricted file upload vulnerability in ferretCMS 1.0.4-alpha allows remote administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a dire...7.5
- CVE-2015-1372SQL injection vulnerability in ferretCMS 1.0.4-alpha allows remote attackers to execute arbitrary SQL commands via the p parameter in an update action to admin.php.7.5
The record
- Peak rank
- #38 in Jan 2015
- Busiest month shown
- Jan 2015, 4 CVEs
- Months with a KEV entry
- 0 since Jan 2015
- Monthly snapshots
- 1 since 2015