Vulnerabilities (CVE)

Filtered by vendor Hongcms Project Subscribe
Filtered by product Hongcms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-18178 1 Hongcms Project 1 Hongcms 2021-05-24 7.5 HIGH 9.8 CRITICAL
Path Traversal in HongCMS v4.0.0 allows remote attackers to view, edit, and delete arbitrary files via a crafted POST request to the component "/hcms/admin/index.php/language/ajax."