📦 Pligg Cms

by Pligg

🔍 What is Pligg Cms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-37677

CRITICAL CVSS 9.8 Jul 25, 2023

CVE-2023-37677 is a remote code execution vulnerability in Pligg CMS (Kliqqi) v2.0.2 that allows attackers to execute arbitrary code on affected systems through the admin_editor.php component. This af...

CVE-2024-42612

HIGH CVSS 8.8 Aug 20, 2024

This CSRF vulnerability in Pligg CMS allows attackers to trick authenticated administrators into performing unauthorized actions by adding domains to the whitelist. It affects Pligg CMS v2.0.2 adminis...

CVE-2024-42605

HIGH CVSS 8.8 Aug 20, 2024

Pligg CMS v2.0.2 contains a Cross-Site Request Forgery (CSRF) vulnerability in the admin page editor. This allows attackers to trick authenticated administrators into performing unauthorized actions l...

CVE-2024-42607

HIGH CVSS 8.8 Aug 20, 2024

Pligg CMS v2.0.2 contains a CSRF vulnerability in the admin backup functionality. Attackers can trick authenticated administrators into performing unauthorized database backup operations. This affects...

CVE-2024-42610

HIGH CVSS 8.8 Aug 20, 2024

This CSRF vulnerability in Pligg CMS v2.0.2 allows attackers to trick authenticated administrators into performing unauthorized backup operations via the /admin/admin_backup.php endpoint. Attackers ca...

CVE-2024-42613

HIGH CVSS 8.8 Aug 20, 2024

This CSRF vulnerability in Pligg CMS allows attackers to trick authenticated administrators into unknowingly installing malicious widgets. Attackers can exploit this by getting an admin to click a spe...

CVE-2024-42617

HIGH CVSS 8.8 Aug 20, 2024

This CSRF vulnerability in Pligg CMS v2.0.2 allows attackers to trick authenticated administrators into performing unauthorized configuration changes via a malicious link. Attackers can modify critica...

CVE-2024-42621

HIGH CVSS 8.8 Aug 20, 2024

Pligg CMS v2.0.2 contains a CSRF vulnerability in the admin editor that allows attackers to trick authenticated administrators into performing unauthorized actions. This affects all Pligg CMS v2.0.2 i...

CVE-2024-42603

HIGH CVSS 8.8 Aug 20, 2024

This CSRF vulnerability in Pligg CMS v2.0.2 allows attackers to trick authenticated administrators into performing unauthorized backup clearing actions. Attackers can craft malicious requests that exe...