Vulnerabilities (CVE)

Filtered by vendor Creatiwity Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-29725 1 Creatiwity 1 Witycms 2022-06-10 6.5 MEDIUM 8.8 HIGH
An arbitrary file upload in the image upload component of wityCMS v0.6.2 allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2018-14029 1 Creatiwity 1 Witycms 2018-09-06 6.8 MEDIUM 8.8 HIGH
CSRF vulnerability in admin/user/edit in Creatiwity wityCMS 0.6.2 allows an attacker to take over a user account, as demonstrated by modifying the account's email field.