Cutesite Cms vulnerabilities
2 known vulnerabilities affecting cutesite/cutesite_cms.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2010-5024P4MEDIUMCVSS 6.0PoCv1.2.3v1.5.02011-11-02
CVE-2010-5024 [MEDIUM] CWE-89 CVE-2010-5024: SQL injection vulnerability in manage/add_user.php in CuteSITE CMS 1.2.3 and 1.5.0 allows remote aut
SQL injection vulnerability in manage/add_user.php in CuteSITE CMS 1.2.3 and 1.5.0 allows remote authenticated users, with Read privileges, to execute arbitrary SQL commands via the user_id parameter. NOTE: some of these details are obtained from third party information.
nvd
CVE-2010-5025P4MEDIUMCVSS 4.3PoCv1.2.3v1.5.02011-11-02
CVE-2010-5025 [MEDIUM] CWE-79 CVE-2010-5025: Cross-site scripting (XSS) vulnerability in manage/main.php in CuteSITE CMS 1.2.3 and 1.5.0 allows r
Cross-site scripting (XSS) vulnerability in manage/main.php in CuteSITE CMS 1.2.3 and 1.5.0 allows remote attackers to inject arbitrary web script or HTML via the fld_path parameter. NOTE: some of these details are obtained from third party information.
nvd