Vulnerabilities (CVE)

Filtered by vendor Deeemm Subscribe
Filtered by product Dmcms
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3720 1 Deeemm 1 Dmcms 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in index.php in DeeEmm CMS (DMCMS) 0.7.4 allows remote attackers to execute arbitrary SQL commands via the page parameter. NOTE: the id vector is already covered by CVE-2007-5679.
CVE-2008-3721 1 Deeemm 1 Dmcms 2024-02-04 7.5 HIGH N/A
PHP remote file inclusion vulnerability in user_language.php in DeeEmm CMS (DMCMS) 0.7.4 allows remote attackers to execute arbitrary PHP code via a URL in the language_dir parameter.
CVE-2007-5679 1 Deeemm 1 Dmcms 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in index.php in DeeEmm.com DM CMS 0.7.0.Beta allows remote attackers to execute arbitrary SQL commands via the id parameter in the media page (build_media_content.php). NOTE: it was later reported that 0.7.4 is also affected.