VendorsGeneric Content Management System Projectgeneric_content_management_systemall versions
Vulnerabilities

Generic Content Management System Project Generic Content Management System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2018-20568
Administrator/index.php in Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 allows SQL injection for authentication bypass.
Published 2018-12-28 · Modified
9.8EPSS 0.016
CVE-2018-20569
user/index.php in Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 allows SQL injection for authentication bypass.
Published 2018-12-28 · Modified
9.8EPSS 0.016
CVE-2018-20589
Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 has XSS via the Administrator/add_pictures.php article ID.
Published 2018-12-30 · Modified
4.8EPSS 0.006
CVE-2018-20590
Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 has XSS via the Administrator/users.php user ID.
Published 2018-12-30 · Modified
4.8EPSS 0.006