Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-3542 | 1 Thinutech | 1 Thinu-cms | 2024-05-17 | 4.0 MEDIUM | 6.1 MEDIUM |
A vulnerability was found in ThinuTech ThinuCMS 1.5 and classified as problematic. Affected by this issue is some unknown functionality of the file /contact.php. The manipulation of the argument name/body leads to cross site scripting. The attack may be launched remotely. VDB-233294 is the identifier assigned to this vulnerability. | |||||
CVE-2023-3541 | 1 Thinutech | 1 Thinu-cms | 2024-05-17 | 4.0 MEDIUM | 6.1 MEDIUM |
A vulnerability has been found in ThinuTech ThinuCMS 1.5 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /author_posts.php. The manipulation of the argument author with the input g6g12<script>alert(1)</script>o8sdm leads to cross site scripting. The attack can be launched remotely. The identifier VDB-233293 was assigned to this vulnerability. | |||||
CVE-2023-3528 | 1 Thinutech | 1 Thinu-cms | 2024-05-17 | 6.5 MEDIUM | 9.8 CRITICAL |
A vulnerability was found in ThinuTech ThinuCMS 1.5. It has been rated as critical. Affected by this issue is some unknown functionality of the file /category.php. The manipulation of the argument cat_id leads to sql injection. The attack may be launched remotely. The identifier of this vulnerability is VDB-233252. |