📦 Victor Cms

by Victor Cms Project

🔍 What is Victor Cms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-23966

CRITICAL CVSS 9.8 May 8, 2023

This SQL injection vulnerability in Victor CMS 1.0 allows attackers to execute arbitrary SQL commands through the post parameter in GET requests to /post.php. Attackers can potentially read, modify, o...

CVE-2022-26201

CRITICAL CVSS 9.8 Mar 4, 2022

CVE-2022-26201 is a SQL injection vulnerability in Victor CMS v1.0 that allows attackers to execute arbitrary SQL commands through unsanitized user input. This affects all installations of Victor CMS ...

CVE-2021-25203

CRITICAL CVSS 9.8 Jul 23, 2021

CVE-2021-25203 is an arbitrary file upload vulnerability in Victor CMS v1.0 that allows attackers to upload malicious files to the server. This vulnerability affects all installations of Victor CMS v1...

CVE-2022-28060

HIGH CVSS 7.5 Apr 28, 2022

CVE-2022-28060 is an SQL injection vulnerability in Victor CMS v1.0 that allows attackers to execute arbitrary SQL commands via the user_name parameter in the login.php file. This affects all users ru...

CVE-2022-23873

HIGH CVSS 8.8 Feb 3, 2022

CVE-2022-23873 is a SQL injection vulnerability in Victor CMS v1.0 that allows attackers to execute arbitrary SQL commands via the 'user_firstname' parameter. This affects all users running Victor CMS...

CVE-2021-46459

HIGH CVSS 7.5 Jan 31, 2022

Victor CMS v1.0 contains SQL injection vulnerabilities in the user management component that allow attackers to execute arbitrary SQL commands. This affects administrators who can access the vulnerabl...

CVE-2021-46458

HIGH CVSS 7.5 Jan 31, 2022

Victor CMS v1.0 contains a SQL injection vulnerability in the admin/posts.php component that allows attackers to execute arbitrary SQL commands through the post_title parameter. This can lead to unaut...