Product:

Articlecms

(Articlecms_project)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 4
Date Id Summary Products Score Patch Annotated
2021-05-13 CVE-2020-20092 File Upload vulnerability exists in ArticleCMS 1.0 via the image upload feature at /admin by changing the Content-Type to image/jpeg and placing PHP code after the JPEG data, which could let a remote malicious user execute arbitrary PHP code. Articlecms 9.8
2021-05-13 CVE-2020-28063 A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell. Articlecms 9.8
2018-11-23 CVE-2018-19469 ArticleCMS through 2017-02-19 has XSS via the /update_personal_infomation realname or email parameter. Articlecms 6.1
2018-06-13 CVE-2018-12339 ArticleCMS through 2017-02-19 has XSS via an "add an article" action. Articlecms 5.4