本ページは quickappscms quickapps_cms に影響する公開済み CVE(NVD の CPE 経由で関連付け)を列挙します。各行に深刻度指標・概要・公開日が含まれます。
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2018-17102 | An issue was discovered in QuickAppsCMS (aka QACMS) through 2.0.0-beta2. A CSRF vulnerability can change the administrator password via the user/me URI. | [email protected] | 8.8 | 0.14% | 2018-09-16 | 2024-11-21 |
| CVE-2018-9108 | CSRF in /admin/user/manage/add in QuickAppsCMS 2.0.0-beta2 allows an unauthorized remote attacker to create an account with admin privileges. | [email protected] | 8.8 | 0.21% | 2018-03-28 | 2024-11-21 |
| CVE-2017-1000495 | QuickApps CMS version 2.0.0 is vulnerable to Stored Cross-site Scripting in the user's real name field resulting in denial of service and performing unauthorised actions with an administrator user's account | [email protected] | 5.4 | 0.21% | 2018-01-03 | 2024-11-21 |