VendorsSemCmssemcmsall versions
Vulnerabilities

SemCms Semcms

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

59CVEs
CVE-2025-51660
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Products.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2025-51652
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Categories.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2025-51653
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_ct.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2025-51654
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Infocategories.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2025-51655
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Quanxian.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2025-51656
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_Link.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2025-51657
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Link.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2025-51658
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_InquiryView.php.
Published 2025-07-14 · Modified
5.4EPSS 0.002
CVE-2024-52725
SemCms v4.8 was discovered to contain a SQL injection vulnerability. This allows an attacker to execute arbitrary code via the ldgid parameter in the SEMCMS_SeoAndTag.php component.
Published 2024-11-20 · Modified
4.9EPSS 0.006
CVE-2018-20017
SEMCMS 3.5 has XSS via the first text box to the SEMCMS_Main.php URI.
Published 2018-12-10 · Modified
4.8EPSS 0.006
CVE-2018-18743
An XSS issue was discovered in SEMCMS 3.4 via the second text field to the admin/SEMCMS_Categories.php?pid=1&lgid=1 URI.
Published 2018-10-28 · Modified
4.8EPSS 0.005
CVE-2018-18841
XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexkey parameter.
Published 2018-10-30 · Modified
4.8EPSS 0.005
CVE-2018-18744
An XSS issue was discovered in SEMCMS 3.4 via the fifth text box to the admin/SEMCMS_Main.php URI.
Published 2018-10-28 · Modified
4.8EPSS 0.005
CVE-2018-18741
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Download.php?lgid=1 during editing.
Published 2018-10-28 · Modified
4.8EPSS 0.005
CVE-2018-18740
An XSS issue was discovered in SEMCMS 3.4 via the first input field to the admin/SEMCMS_Link.php?lgid=1 URI.
Published 2018-10-28 · Modified
4.8EPSS 0.005
CVE-2018-18745
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Menu.php?lgid=1 during editing.
Published 2018-10-28 · Modified
4.8EPSS 0.005
CVE-2018-18739
An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Products.php?lgid=1 Keywords field.
Published 2018-10-28 · Modified
4.8EPSS 0.005
CVE-2018-18738
An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Categories.php?pid=1&lgid=1 category_key parameter.
Published 2018-10-28 · Modified
4.8EPSS 0.005
CVE-2024-53502
Seecms v4.8 was discovered to contain a SQL injection vulnerability in the SEMCMS_SeoAndTag.php page.
Published 2024-12-03 · Analyzed
3.8EPSS 0.003
← Prev2 / 2