VendorsFineCMS Projectfinecms5.0.11
Vulnerabilities

FineCMS Project FineCMS 5.0.11

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2017-13697
controllers/member/api.php in dayrui FineCms 5.0.11 has XSS related to the dirname variable.
Published 2017-08-25 · Modified
6.1EPSS 0.008
CVE-2017-14192
The checktitle function in controllers/member/api.php in dayrui FineCms 5.0.11 has XSS related to the module field.
Published 2017-09-07 · Modified
6.1EPSS 0.006
CVE-2017-14193
The oauth function in controllers/member/api.php in dayrui FineCms 5.0.11 has XSS related to the Referer HTTP header with Internet Explorer.
Published 2017-09-07 · Modified
6.1EPSS 0.006
CVE-2017-14194
The out function in controllers/member/Login.php in dayrui FineCms 5.0.11 has XSS related to the Referer HTTP header with Internet Explorer.
Published 2017-09-07 · Modified
6.1EPSS 0.006
CVE-2017-14195
The call_msg function in controllers/Form.php in dayrui FineCms 5.0.11 might have XSS related to the Referer HTTP header with Internet Explorer.
Published 2017-09-07 · Modified
6.1EPSS 0.006