📦 Hongcms

by Hongcms Project

🔍 What is Hongcms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-18178

CRITICAL CVSS 9.8 May 18, 2021

CVE-2020-18178 is a critical path traversal vulnerability in HongCMS v4.0.0 that allows remote attackers to read, modify, or delete arbitrary files on the server via crafted POST requests to the langu...

CVE-2020-21252

HIGH CVSS 8.8 Jun 20, 2023

This CSRF vulnerability in Neeke HongCMS 3.0.0 allows attackers to trick authenticated users into performing unauthorized actions, potentially leading to privilege escalation and arbitrary code execut...

CVE-2022-28523

HIGH CVSS 8.1 Apr 26, 2022

HongCMS 3.0.0 contains an arbitrary file deletion vulnerability in the template management component. Attackers can delete any file on the server by exploiting the /admin/index.php/template/ajax?actio...