CVE-2020-35274
- EPSS 0.21%
- Veröffentlicht 21.12.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:27:08
DotCMS Add Template with admin panel 20.11 is affected by cross-site Scripting (XSS) to gain remote privileges. An attacker could compromise the security of a website or web application through a stored XSS attack and stealing cookies using XSS.
CVE-2020-6754
- EPSS 75.5%
- Veröffentlicht 05.02.2020 17:15:10
- Zuletzt bearbeitet 21.11.2024 05:36:08
dotCMS before 5.2.4 is vulnerable to directory traversal, leading to incorrect access control. It allows an attacker to read or execute files under $TOMCAT_HOME/webapps/ROOT/assets (which should be a protected directory). Additionally, attackers can ...
CVE-2019-12872
- EPSS 0.29%
- Veröffentlicht 18.06.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:23:45
dotCMS before 5.1.6 is vulnerable to a SQL injection that can be exploited by an attacker of the role Publisher via view_unpushed_bundles.jsp.
CVE-2019-12309
- EPSS 0.33%
- Veröffentlicht 23.05.2019 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:22:35
dotCMS before 5.1.0 has a path traversal vulnerability exploitable by an administrator to create files. The vulnerability is caused by the insecure extraction of a ZIP archive.
CVE-2019-11846
- EPSS 0.21%
- Veröffentlicht 14.05.2019 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:21:53
/servlets/ajax_file_upload?fieldName=binary3 in dotCMS 5.1.1 allows XSS and HTML Injection.
CVE-2018-17422
- EPSS 10.8%
- Veröffentlicht 07.03.2019 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:54:22
dotCMS before 5.0.2 has open redirects via the html/common/forward_js.jsp FORWARD_URL parameter or the html/portlet/ext/common/page_preview_popup.jsp hostname parameter.
CVE-2018-19554
- EPSS 0.16%
- Veröffentlicht 26.11.2018 07:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:09
An issue was discovered in Dotcms through 5.0.3. Attackers may perform XSS attacks via the inode, identifier, or fieldName parameter in html/js/dotcms/dijit/image/image_tool.jsp.
CVE-2018-16980
- EPSS 0.31%
- Veröffentlicht 12.09.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:38
dotCMS V5.0.1 has XSS in the /html/portlet/ext/contentlet/image_tools/index.jsp fieldName and inode parameters.
CVE-2017-3189
- EPSS 6.81%
- Veröffentlicht 24.07.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:24:59
The dotCMS administration panel, versions 3.7.1 and earlier, "Push Publishing" feature in Enterprise Pro is vulnerable to arbitrary file upload. When "Bundle" tar.gz archives uploaded to the Push Publishing feature are decompressed, there are no chec...
CVE-2017-3188
- EPSS 1.67%
- Veröffentlicht 24.07.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:24:59
The dotCMS administration panel, versions 3.7.1 and earlier, "Push Publishing" feature in Enterprise Pro is vulnerable to path traversal. When "Bundle" tar.gz archives uploaded to the Push Publishing feature are decompressed, the filenames of its con...