VendorsNjtechgreencmsall versions
Vulnerabilities

Njtech GreenCMS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2025-9415
GreenCMS index.php unrestricted upload
Published 2025-08-25 · Analyzed
9.8EPSS 0.004
CVE-2018-11670
An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that allows attackers to execute arbitrary PHP code via the content parameter to index.php?m=admin&c=media&a=fileconnect.
Published 2018-06-01 · Modified
8.81 PoCEPSS 0.025
CVE-2018-11671
An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that can add an admin account via index.php?m=admin&c=access&a=adduserhandle.
Published 2018-06-01 · Modified
8.81 PoCEPSS 0.025
CVE-2019-25573
Green CMS 2.x SQL Injection via cat Parameter
Published 2026-03-21 · Analyzed
8.8EPSS 0.003
CVE-2022-28918
GreenCMS v2.3.0603 was discovered to contain an arbitrary file deletion vulnerability via /index.php?m=admin&c=custom&a=plugindelhandle&plugin_name=.
Published 2022-04-26 · Modified
8.1EPSS 0.011
CVE-2020-21366
Cross Site Request Forgery vulnerability in GreenCMS v.2.3 allows an attacker to gain privileges via the adduser function of index.php.
Published 2023-06-20 · Modified
8.0EPSS 0.003
CVE-2018-12604
GreenCMS 2.3.0603 allows remote attackers to obtain sensitive information via a direct request for Data/Log/year_month_day.log.
Published 2018-06-20 · Modified
7.51 PoCEPSS 0.132
CVE-2019-25574
Green CMS 2.x Path Traversal Arbitrary File Download
Published 2026-03-21 · Analyzed
7.1EPSS 0.011
CVE-2025-15187
GreenCMS File DataController.class.php path traversal
Published 2025-12-29 · Modified
6.5EPSS 0.007
CVE-2024-22570
A stored cross-site scripting (XSS) vulnerability in /install.php?m=install&c=index&a=step3 of GreenCMS v2.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Published 2024-01-29 · Modified
5.4EPSS 0.003
CVE-2025-14244
GreenCMS Menu Management CustomController.class.php cross site scripting
Published 2025-12-08 · Analyzed
4.8EPSS 0.003