Vendorsnative-php-cms Projectnative-php-cmsall versions
Vulnerabilities

native-php-cms Project native-php-cms

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2021-36503
SQL injection vulnerability in native-php-cms 1.0 allows remote attackers to run arbitrary SQL commands via the cat parameter to /list.php file.
Published 2023-02-03 · Modified
9.8EPSS 0.009
CVE-2025-0490
Fanli2012 native-php-cms article_dodel.php sql injection
Published 2025-01-15 · Analyzed
8.8EPSS 0.006
CVE-2025-0488
Fanli2012 native-php-cms product_list.php sql injection
Published 2025-01-15 · Analyzed
8.8EPSS 0.005
CVE-2025-0489
Fanli2012 native-php-cms friendlink_dodel.php sql injection
Published 2025-01-15 · Analyzed
8.8EPSS 0.005
CVE-2025-0482
Fanli2012 native-php-cms user_recoverpwd.php default credentials
Published 2025-01-15 · Analyzed
7.5EPSS 0.006
CVE-2025-0483
Fanli2012 native-php-cms jump.php cross site scripting
Published 2025-01-15 · Analyzed
5.3EPSS 0.003