Vulnerabilities (CVE)

Filtered by vendor Sscms Subscribe
Filtered by product Siteserver Cms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-42654 1 Sscms 1 Siteserver Cms 2022-06-03 7.5 HIGH 9.8 CRITICAL
SiteServer CMS < V5.1 is affected by an unrestricted upload of a file with dangerous type (getshell), which could be used to execute arbitrary code.
CVE-2022-28118 1 Sscms 1 Siteserver Cms 2022-05-11 7.5 HIGH 9.8 CRITICAL
SiteServer CMS v7.x allows attackers to execute arbitrary code via a crafted plug-in.