Xecms
Xecms · 2 CVEs
CVE-2008-6714
HIGH
admin.php in xeCMS 1.0.0 RC2 and earlier allows remote attackers to bypass authentication and access the admin panel by…
Apr 10, 2009
CVE-2007-6508
HIGH
Directory traversal vulnerability in view.php in xeCMS 1.0 allows remote attackers to read arbitrary files via a ..%2F…
Dec 21, 2007
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2008-6714 | admin.php in xeCMS 1.0.0 RC2 and earlier allows remote attackers to bypass authentication and access the admin panel by setting the xecms_username cookie. | HIGH | 12.03% | Apr 10, 2009 |
| CVE-2007-6508 | Directory traversal vulnerability in view.php in xeCMS 1.0 allows remote attackers to read arbitrary files via a ..%2F (dot dot slash) in the list parameter. | HIGH | 2.89% | Dec 21, 2007 |
Showing 1 to 2 of 2 CVEs