engineercms_project engineercms CVE Vulnerabilities (3)

CVEs: 3 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting engineercms_project engineercms (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-44831 EngineerCMS v1.02 through v2.0.5 has a SQL injection vulnerability in the /project/addproject interface. [email protected] 9.8 0.27% 2025-05-13 2025-06-16
CVE-2025-44830 EngineerCMS v1.02 through v.2.0.5 has a SQL injection vulnerability in the /project/addprojtemplet interface. [email protected] 9.8 0.27% 2025-05-12 2025-06-13
CVE-2021-36605 engineercms 1.03 is vulnerable to Cross Site Scripting (XSS). There is no escaping in the nickname field on the user list page. When viewing this page, the JavaScript code will be executed in the user's browser. [email protected] 5.4 0.17% 2021-07-30 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence