VendorsocProductscomposrall versions
Vulnerabilities

ocProducts Composr

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2021-30149
Composr 10.0.36 allows upload and execution of PHP files.
Published 2021-04-06 · Modified
9.81 PoCEPSS 0.101
CVE-2021-46360
Authenticated remote code execution (RCE) in Composr-CMS 10.0.39 and earlier allows remote attackers to execute arbitrary code via uploading a PHP shell through /adminzone/index.php?page=admin-commandr.
Published 2022-02-09 · Modified
8.81 PoCEPSS 0.092
CVE-2021-30150
Composr 10.0.36 allows XSS in an XML script.
Published 2021-04-06 · Modified
6.11 PoCEPSS 0.028