📦 Kitecms

by Kitesky

🔍 What is Kitecms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-31707

CRITICAL CVSS 9.8 Apr 4, 2023

CVE-2021-31707 is a critical remote code execution vulnerability in KiteCMS that allows attackers to upload malicious files and execute arbitrary code on affected systems. This affects all KiteCMS ins...

CVE-2021-36546

HIGH CVSS 7.5 Feb 3, 2023

KiteCMS 1.1 has an incorrect access control vulnerability that allows remote attackers to view sensitive files by manipulating URL paths. This affects all installations of KiteCMS 1.1 that are exposed...

CVE-2020-20672

HIGH CVSS 7.8 Sep 13, 2021

KiteCMS V1.1 contains an arbitrary file upload vulnerability in the /admin/upload/uploadfile endpoint that allows attackers to upload malicious PHP files. This enables remote code execution (RCE) and ...