Havalite / Cms
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2013-0161 | Havalite CMS 1.1.7 has a stored XSS vulnerability | MEDIUM | 5.4 | Jan 29, 2020 |
| CVE-2012-5919 | Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) fin… | MEDIUM | 4.3 | Nov 19, 2012 |
| CVE-2012-5894 | SQL injection vulnerability in hava_post.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the postId paramet… | HIGH | 7.5 | Nov 17, 2012 |
| CVE-2012-5893 | Unrestricted file upload vulnerability in hava_upload.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary code by uploading a fi… | MEDIUM | 6.8 | Nov 17, 2012 |
| CVE-2012-5892 | Havalite CMS 1.1.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the… | MEDIUM | 5.0 | Nov 17, 2012 |
Showing 1 to 4 of 4 CVEs