Vulnerabilities (CVE)

Filtered by vendor Victor Cms Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-25203 1 Victor Cms Project 1 Victor Cms 2021-07-29 7.5 HIGH 9.8 CRITICAL
Arbitrary file upload vulnerability in Victor CMS v 1.0 allows attackers to execute arbitrary code via the file upload to \CMSsite-master\admin\includes\admin_add_post.php.
CVE-2020-29280 1 Victor Cms Project 1 Victor Cms 2020-12-03 7.5 HIGH 9.8 CRITICAL
The Victor CMS v1.0 application is vulnerable to SQL injection via the 'search' parameter on the search.php page.