Native-PHP-Cms
Native-PHP-Cms Project · 6 CVEs
CVE-2025-0490
MEDIUM
Fanli2012 native-php-cms article_dodel.php sql injection
Jan 15, 2025
CVE-2025-0489
MEDIUM
Fanli2012 native-php-cms friendlink_dodel.php sql injection
Jan 15, 2025
CVE-2025-0488
MEDIUM
Fanli2012 native-php-cms product_list.php sql injection
Jan 15, 2025
CVE-2025-0483
MEDIUM
Fanli2012 native-php-cms jump.php cross site scripting
Jan 15, 2025
CVE-2025-0482
MEDIUM
Fanli2012 native-php-cms user_recoverpwd.php default credentials
Jan 15, 2025
CVE-2021-36503
CRITICAL
SQL injection vulnerability in native-php-cms 1.0 allows remote attackers to run arbitrary SQL commands via the cat par…
Feb 3, 2023
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-0490 | Fanli2012 native-php-cms article_dodel.php sql injection | MEDIUM | 0.58% | Jan 15, 2025 |
| CVE-2025-0489 | Fanli2012 native-php-cms friendlink_dodel.php sql injection | MEDIUM | 0.45% | Jan 15, 2025 |
| CVE-2025-0488 | Fanli2012 native-php-cms product_list.php sql injection | MEDIUM | 0.45% | Jan 15, 2025 |
| CVE-2025-0483 | Fanli2012 native-php-cms jump.php cross site scripting | MEDIUM | 0.33% | Jan 15, 2025 |
| CVE-2025-0482 | Fanli2012 native-php-cms user_recoverpwd.php default credentials | MEDIUM | 0.62% | Jan 15, 2025 |
| CVE-2021-36503 | SQL injection vulnerability in native-php-cms 1.0 allows remote attackers to run arbitrary SQL commands via the cat parameter to /list.php file. | CRITICAL | 0.85% | Feb 3, 2023 |
Showing 1 to 6 of 6 CVEs