Vulnerabilities (CVE)

Filtered by vendor 1234n Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-19896 1 1234n 1 Minicms 2022-07-08 7.5 HIGH 9.8 CRITICAL
File inclusion vulnerability in Minicms v1.9 allows remote attackers to execute arbitary PHP code via post-edit.php.
CVE-2020-36052 1 1234n 1 Minicms 2021-01-08 7.5 HIGH 9.8 CRITICAL
Directory traversal vulnerability in post-edit.php in MiniCMS V1.10 allows remote attackers to include and execute arbitrary files via the state parameter.
CVE-2018-18892 1 1234n 1 Minicms 2018-12-03 7.5 HIGH 9.8 CRITICAL
MiniCMS 1.10 allows execution of arbitrary PHP code via the install.php sitename parameter, which affects the site_name field in mc_conf.php.