VendorsNucleus CMSnucleus_cms3.70
Vulnerabilities

Nucleus CMS Nucleus CMS 3.70

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-16636
Nucleus CMS 3.70 allows HTML Injection via the index.php body parameter.
Published 2018-12-10 · Modified
6.5EPSS 0.010
CVE-2015-5454
Cross-site scripting (XSS) vulnerability in Nucleus CMS allows remote attackers to inject arbitrary web script or HTML via the title parameter when adding a new item.
Published 2015-07-08 · Modified
4.3EPSS 0.016