cbcvebase.

Anirbandutta9 Content Management System vulnerabilities

5 known vulnerabilities affecting anirbandutta9/content_management_system.

Total CVEs
5
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH3

Vulnerabilities

Page 1 of 1
CVE-2024-10758P2CRITICALCVSS 9.8PoCv1.02024-11-04
CVE-2024-10758 [CRITICAL] CWE-89 CVE-2024-10758: A vulnerability, which was classified as critical, was found in code-projects/anirbandutta9 Content A vulnerability, which was classified as critical, was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. This affects an unknown part of the file /index.php. The manipulation of the argument user_name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public a
nvd
CVE-2025-5631P3CRITICALCVSS 9.8v1.02025-06-05
CVE-2025-5631 [CRITICAL] CWE-74 CVE-2025-5631: A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0 A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been classified as critical. Affected is an unknown function of the file /publicposts.php. The manipulation of the argument post leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public
nvd
CVE-2025-5632P3HIGHCVSS 8.8v1.02025-06-05
CVE-2025-5632 [HIGH] CWE-74 CVE-2025-5632: A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0 A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/users.php. The manipulation of the argument change_to_admin leads to sql injection. The attack can be launched remotely. The exploit has been
nvd
CVE-2025-5633P3HIGHCVSS 8.8v1.02025-06-05
CVE-2025-5633 [HIGH] CWE-74 CVE-2025-5633: A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0 A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/users.php. The manipulation of the argument delete leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the p
nvd
CVE-2025-15197P3HIGHCVSS 7.2v1.02025-12-29
CVE-2025-15197 [HIGH] CWE-284 CVE-2025-15197: A security flaw has been discovered in code-projects/anirbandutta9 Content Management System and New A security flaw has been discovered in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. This vulnerability affects unknown code of the file /admin/editposts.php. Performing manipulation of the argument image results in unrestricted upload. The attack may be initiated remotely. The exploit has been released to the public and may
nvd
Anirbandutta9 Content Management System vulnerabilities | cvebase