Vulnerabilities (CVE)

Filtered by vendor Razorcms Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-19905 1 Razorcms 1 Razorcms 2019-02-26 3.5 LOW 5.4 MEDIUM
HTML injection exists in razorCMS 3.4.8 via the /#/page keywords parameter.
CVE-2018-19906 1 Razorcms 1 Razorcms 2019-02-25 3.5 LOW 5.4 MEDIUM
Stored XSS exists in razorCMS 3.4.8 via the /#/page description parameter.
CVE-2018-16727 1 Razorcms 1 Razorcms 2018-11-02 3.5 LOW 5.4 MEDIUM
razorCMS 3.4.7 allows Stored XSS via the keywords of the homepage within the settings component.
CVE-2018-16726 1 Razorcms 1 Razorcms 2018-11-02 3.5 LOW 5.4 MEDIUM
razorCMS 3.4.7 allows HTML injection via the description of the homepage within the settings component.