Publiccms

Publiccms

48 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.15%
  • Veröffentlicht 29.09.2025 15:16:08
  • Zuletzt bearbeitet 23.12.2025 18:49:30

OS Command injection vulnerability in PublicCMS PublicCMS-V5.202506.a, and PublicCMS-V5.202506.b allowing attackers to execute arbitrary commands via crafted DATABASE, USERNAME, or PASSWORD variables to the backupDB.bat file.

Exploit
  • EPSS 0.32%
  • Veröffentlicht 22.07.2025 03:32:05
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS up to 5.202506.a. This issue affects some unknown processing of the file publiccms-parent/publiccms/src/main/webapp/resource/plugins/pdfjs/viewer.html. The mani...

Exploit
  • EPSS 0.3%
  • Veröffentlicht 22.07.2025 01:32:06
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was found in Sanluan PublicCMS up to 5.202506.a. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file publiccms-parent/publiccms/src/main/resources/templates/admin/cmsDiy/preview....

Exploit
  • EPSS 0.65%
  • Veröffentlicht 06.03.2025 19:15:27
  • Zuletzt bearbeitet 01.07.2025 21:23:28

An arbitrary file upload vulnerability in the component /cms/CmsWebFileAdminController.java of PublicCMS v4.0.202406 allows attackers to execute arbitrary code via uploading a crafted svg or xml file.

Exploit
  • EPSS 0.49%
  • Veröffentlicht 13.11.2024 16:15:17
  • Zuletzt bearbeitet 15.11.2024 22:50:48

A vulnerability was found in Public CMS 5.202406.d and classified as problematic. This issue affects some unknown processing of the file /admin/cmsVote/save of the component Voting Management. The manipulation leads to cross site scripting. The attac...

Exploit
  • EPSS 0.37%
  • Veröffentlicht 11.11.2024 15:15:04
  • Zuletzt bearbeitet 23.11.2024 01:31:09

A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS 5.202406.d. This issue affects some unknown processing of the file /admin/cmsTagType/save of the component Tag Type Handler. The manipulation of the argument na...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 08.10.2024 18:15:30
  • Zuletzt bearbeitet 23.04.2025 01:14:15

PublicCMS V4.0.202406.d was discovered to contain a cross-site scripting (XSS) vulnerability via a crafted script to the Category Managment feature

Exploit
  • EPSS 0.51%
  • Veröffentlicht 23.08.2024 16:15:06
  • Zuletzt bearbeitet 21.04.2025 14:42:42

publiccms V4.0.202302.e and before is vulnerable to Any File Upload via publiccms/admin/cmsTemplate/saveMetaData

Exploit
  • EPSS 0.33%
  • Veröffentlicht 12.07.2024 16:15:05
  • Zuletzt bearbeitet 13.03.2025 13:15:41

PublicCMS v4.0.202302.e was discovered to contain an arbitrary file content replacement vulnerability via the component /admin/cmsTemplate/replace.

Exploit
  • EPSS 0.72%
  • Veröffentlicht 12.07.2024 16:15:05
  • Zuletzt bearbeitet 26.03.2025 20:15:20

PublicCMS v4.0.202302.e was discovered to contain a remote commande execution (RCE) vulnerability via the cmdarray parameter at /site/ScriptComponent.java.