Qcms

Qcms

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.26%
  • Veröffentlicht 21.09.2026 01:30:14
  • Zuletzt bearbeitet 22.09.2026 16:18:17

A security vulnerability has been detected in QCMS up to 6.0.6. This issue affects the function self_Tmp in the library Lib/Config/Controllers.php of the component Content Detail Page. Such manipulation of the argument ID leads to sql injection. The ...

  • EPSS 0.2%
  • Veröffentlicht 17.08.2026 00:00:00
  • Zuletzt bearbeitet 31.08.2026 20:12:02

SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute arbitrary code

Exploit
  • EPSS 0.47%
  • Veröffentlicht 06.08.2025 00:00:00
  • Zuletzt bearbeitet 23.09.2025 18:34:04

A vulnerability in QCMS version 6.0.5 allows authenticated users to read arbitrary files from the server due to insufficient validation of the "Name" parameter in the backend template editor. By manipulating the parameter, attackers can perform direc...

Exploit
  • EPSS 0.52%
  • Veröffentlicht 12.03.2018 05:29:00
  • Zuletzt bearbeitet 21.11.2024 04:13:13

QCMS version 3.0 has XSS via the webname parameter to the /backend/system.html URI.

Exploit
  • EPSS 0.52%
  • Veröffentlicht 12.03.2018 05:29:00
  • Zuletzt bearbeitet 21.11.2024 04:13:13

QCMS version 3.0 has XSS via the title parameter to the /guest/index.html URI.