Jakweb
Jakweb Gecko CMS: vulnerabilidades y CVE
Jakweb Gecko CMS tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2015-1425 | Crítica (9.8) | 1.5% | — | 18 feb 2020 | JAKWEB Gecko CMS has Multiple Input Validation Vulnerabilities |
| CVE-2015-1424 | Media (6.8) | 2.3% | — | 29 ene 2015 | Cross-site request forgery (CSRF) vulnerability in Gecko CMS 2.2 and 2.3 allows remote attackers to hijack the authentication of administrators for requests that add an administrator user via a newuser request to… |
| CVE-2015-1423 | Media (6.5) | 1.8% | — | 29 ene 2015 | Multiple SQL injection vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote administrators to execute arbitrary SQL commands via the (1) jak_delete_log[] or (2) ssp parameter to admin/index.php. |
| CVE-2015-1422 | Media (4.3) | 4.1% | — | 29 ene 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) horder[], (2) jak_catid, (3) jak_content, (4) jak_css, (5)… |