CVE-2025-64047
- EPSS 0.04%
- Veröffentlicht 24.11.2025 00:00:00
- Zuletzt bearbeitet 02.12.2025 03:07:14
OpenRapid RapidCMS 1.3.1 is vulnerable to Cross Site Scripting (XSS) in /user/user-move.php.
CVE-2025-64046
- EPSS 0.04%
- Veröffentlicht 17.11.2025 00:00:00
- Zuletzt bearbeitet 19.11.2025 13:11:59
OpenRapid RapidCMS 1.3.1 is vulnerable to Cross Site Scripting (XSS) in /system/update-run.php.
CVE-2024-44838
- EPSS 0.11%
- Veröffentlicht 06.09.2024 22:15:02
- Zuletzt bearbeitet 22.04.2025 14:04:24
RapidCMS v1.3.1 was discovered to contain a SQL injection vulnerability via the username parameter at /resource/runlogin.php.
CVE-2024-44839
- EPSS 0.11%
- Veröffentlicht 06.09.2024 22:15:02
- Zuletzt bearbeitet 22.04.2025 14:03:59
RapidCMS v1.3.1 was discovered to contain a SQL injection vulnerability via the articleid parameter at /default/article.php.
CVE-2024-45771
- EPSS 0.12%
- Veröffentlicht 06.09.2024 22:15:02
- Zuletzt bearbeitet 22.04.2025 14:03:43
RapidCMS v1.3.1 was discovered to contain a SQL injection vulnerability via the password parameter at /resource/runlogin.php.
CVE-2024-8335
- EPSS 0.1%
- Veröffentlicht 30.08.2024 13:15:13
- Zuletzt bearbeitet 19.09.2024 15:31:21
A vulnerability classified as critical has been found in OpenRapid RapidCMS up to 1.3.1. Affected is an unknown function of the file /resource/runlogon.php. The manipulation of the argument username leads to sql injection. It is possible to launch th...
CVE-2024-8331
- EPSS 0.1%
- Veröffentlicht 30.08.2024 11:15:15
- Zuletzt bearbeitet 03.09.2024 14:25:51
A vulnerability was found in OpenRapid RapidCMS up to 1.3.1. It has been classified as critical. This affects an unknown part of the file /admin/user/user-move-run.php. The manipulation of the argument username leads to sql injection. It is possible ...
CVE-2023-5262
- EPSS 0.07%
- Veröffentlicht 29.09.2023 14:15:11
- Zuletzt bearbeitet 21.11.2024 08:41:24
A vulnerability has been found in OpenRapid RapidCMS 1.3.1 and classified as critical. Affected by this vulnerability is the function isImg of the file /admin/config/uploadicon.php. The manipulation of the argument fileName leads to unrestricted uplo...
CVE-2023-5258
- EPSS 0.05%
- Veröffentlicht 29.09.2023 12:15:13
- Zuletzt bearbeitet 21.11.2024 08:41:23
A vulnerability classified as critical has been found in OpenRapid RapidCMS 1.3.1. This affects an unknown part of the file /resource/addgood.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remot...
CVE-2023-5033
- EPSS 0.06%
- Veröffentlicht 18.09.2023 05:15:07
- Zuletzt bearbeitet 21.11.2024 08:40:56
A vulnerability classified as critical has been found in OpenRapid RapidCMS 1.3.1. This affects an unknown part of the file /admin/category/cate-edit-run.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the ...