Lucene search

K

Beescms Security Vulnerabilities

cve
cve

CVE-2020-22334

Cross Site Request Forgery (CSRF) vulnerability in beescms v4 allows attackers to delete the administrator account via crafted request to...

6.5CVSS

6.5AI Score

0.001EPSS

2023-05-08 02:15 PM
10
cve
cve

CVE-2020-23572

BEESCMS v4.0 was discovered to contain an arbitrary file upload vulnerability via the component /admin/upload.php. This vulnerability allows attackers to execute arbitrary code via a crafted image...

8.8CVSS

8.9AI Score

0.002EPSS

2021-11-08 09:15 PM
20
cve
cve

CVE-2019-8347

BEESCMS 4.0 has a CSRF vulnerability to add arbitrary VIP accounts via the admin/admin_member.php?action=add&nav=add_web_user&admin_p_nav=user...

8.8CVSS

8.6AI Score

0.001EPSS

2019-02-15 03:29 PM
20
cve
cve

CVE-2018-12739

In BEESCMS 4.0, CSRF allows administrators to be added arbitrarily, a related issue to...

8.8CVSS

8.5AI Score

0.002EPSS

2018-07-05 08:29 PM
33
cve
cve

CVE-2018-10266

BEESCMS 4.0 has a CSRF vulnerability to add an administrator account via the admin/admin_admin.php?nav=list_admin_user&admin_p_nav=user...

8.8CVSS

8.6AI Score

0.001EPSS

2018-04-22 01:29 AM
18