NVD - Results

You might also like

Download as pdf or txt
Download as pdf or txt
You are on page 1of 2

An official website of the United States government Here's how you know

NVD

VULNERABILITIES SEARCH AND STATISTICS

 Search Results (Refine Search)


Sort results by:

Publish Date Descending


Search Parameters: Sort
Results Type: Overview
Keyword (text search): cpe:2.3:a:dswjcms_project:dswjcms:1.6.4:*:*:*:*:*:*:*
CPE Name Search: true

There are 4 matching records.


Displaying matches 1 through 4.

Vuln ID Summary  CVSS Severity 

CVE-2020-19268 A cross-site request forgery (CSRF) in V4.0:(not available)


index.php/Dswjcms/User/tfAdd of Dswjcms 1.6.4 allows V3.1: 5.7 MEDIUM

authenticated attackers to arbitrarily add administrator V2.0: 3.5 LOW


users.

Published: September 09, 2021; 2:15:08 pm -0400

CVE-2020-19267 An issue in index.php/Dswjcms/Basis/resources of V4.0:(not available)


Dswjcms 1.6.4 allows attackers to execute arbitrary code V3.1: 9.8 CRITICAL

via uploading a crafted PHP file. V2.0: 7.5 HIGH

Published: September 09, 2021; 2:15:08 pm -0400

CVE-2020-19266 A stored cross-site scripting (XSS) vulnerability in the V4.0:(not available)


index.php/Dswjcms/Site/articleList component of V3.1: 6.1 MEDIUM
Dswjcms 1.6.4 allows attackers to execute arbitrary web V2.0: 4.3 MEDIUM

scripts or HTML.

Published: September 09, 2021; 2:15:08 pm -0400



Vuln ID Summary  CVSS Severity 

CVE-2020-19265 A stored cross-site scripting (XSS) vulnerability in the V4.0:(not available)


index.php/Dswjcms/Basis/links component of Dswjcms V3.1: 6.1 MEDIUM
1.6.4 allows attackers to execute arbitrary web scripts or V2.0: 4.3 MEDIUM

HTML.

Published: September 09, 2021; 2:15:08 pm -0400

     

HEADQUARTERS
100 Bureau Drive
Gaithersburg, MD 20899
(301) 975-2000

Webmaster | Contact Us | Our Other Offices


Incident Response Assistance and Non-NVD Related
Technical Cyber Security Questions:
US-CERT Security Operations Center
Email: soc@us-cert.gov
Phone: 1-888-282-0870

Site Privacy | Accessibility | Privacy Program | Copyrights | Vulnerability Disclosure | No Fear Act Policy | FOIA | Environmental
Policy | Scientific Integrity | Information Quality Standards | Commerce.gov | Science.gov | USA.gov

You might also like