Feehi

Feehicms

25 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.31%
  • Veröffentlicht 20.06.2023 15:15:11
  • Zuletzt bearbeitet 10.12.2024 17:15:06

File Upload vulenrability in liufee CMS v.2.0.7.1 allows a remote attacker to execute arbitrary code via the image suffix function.

Exploit
  • EPSS 0.51%
  • Veröffentlicht 15.12.2022 19:15:22
  • Zuletzt bearbeitet 21.04.2025 16:15:50

Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbirtary code via the callback parameter to /cms/notify.

Exploit
  • EPSS 0.51%
  • Veröffentlicht 15.12.2022 19:15:22
  • Zuletzt bearbeitet 21.04.2025 15:15:51

Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.1.1 allows remote attackers to run arbitrary code via upload of crafted XML file.

Exploit
  • EPSS 0.51%
  • Veröffentlicht 15.12.2022 19:15:22
  • Zuletzt bearbeitet 21.04.2025 16:15:50

Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbitrary code via the title field of the create article page.

Exploit
  • EPSS 0.51%
  • Veröffentlicht 15.12.2022 19:15:22
  • Zuletzt bearbeitet 21.04.2025 16:15:50

Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbitrary code via the username field of the admin log in page.

Exploit
  • EPSS 0.46%
  • Veröffentlicht 15.12.2022 19:15:15
  • Zuletzt bearbeitet 21.04.2025 19:15:16

File Upload vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via crafted image upload.

Exploit
  • EPSS 0.42%
  • Veröffentlicht 15.12.2022 19:15:15
  • Zuletzt bearbeitet 21.04.2025 19:15:16

Cross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via the user name field of the login page.

Exploit
  • EPSS 0.64%
  • Veröffentlicht 15.12.2022 19:15:15
  • Zuletzt bearbeitet 21.04.2025 20:15:17

Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang attribute of an html tag.

Exploit
  • EPSS 0.58%
  • Veröffentlicht 15.12.2022 19:15:15
  • Zuletzt bearbeitet 21.04.2025 20:15:16

Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote attackers to run arbitrary code via tha lang attribute of an html tag.

  • EPSS 0.2%
  • Veröffentlicht 16.11.2022 08:15:28
  • Zuletzt bearbeitet 21.11.2024 07:34:26

A vulnerability, which was classified as problematic, has been found in FeehiCMS. Affected by this issue is some unknown functionality of the component Post My Comment Tab. The manipulation leads to cross-site request forgery. The attack may be launc...