acc dm_corporative_cms CVE 漏洞(9)

CVE 數: 9 CPE versions: View versions table

摘要

本頁列出影響 acc dm_corporative_cms 的已公開 CVE 漏洞(透過 NVD CPE 關聯)。每列包含嚴重程度評分、摘要與發布日期,便於識別與分析安全議題。

顯示 199 CVE 數
«« 第一頁 « 上一頁 第 1 / 1 頁 下一頁 »
CVE 摘要 來源 最高 CVSS EPSS % 公開時間 更新時間
CVE-2025-40662 Absolute path disclosure vulnerability in DM Corporative CMS. This vulnerability allows an attacker to view the contents of webroot/file, if navigating to a non-existent file. [email protected] 6.9 0.31% 2025-06-10 2025-10-22
CVE-2025-40661 An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/selectionnode/selection.asp. [email protected] 6.9 0.27% 2025-06-10 2025-10-22
CVE-2025-40660 An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/select node/data.asp?mode=catalogue&id1=1&id2=1session=&cod=1&networks=0. [email protected] 6.9 0.27% 2025-06-10 2025-10-22
CVE-2025-40659 An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/selectionnode/framesSelectionNetworks.asp. [email protected] 6.9 0.27% 2025-06-10 2025-10-22
CVE-2025-40658 An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/selectionnode/framesSelection.asp. [email protected] 6.9 0.27% 2025-06-10 2025-10-22
CVE-2025-40657 A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the codform parameter in /modules/forms/collectform.asp. [email protected] 9.3 0.24% 2025-06-10 2025-10-22
CVE-2025-40656 A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the cod parameter in /administer/node-selection/data.asp. [email protected] 9.3 0.24% 2025-06-10 2025-10-23
CVE-2025-40655 A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the name parameter in /antcatalogue.asp. [email protected] 9.3 0.24% 2025-06-10 2025-10-23
CVE-2025-40654 A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the name and cod parameters in /antbuspre.asp. [email protected] 9.3 0.24% 2025-06-10 2025-10-23
«« 第一頁 « 上一頁 第 1 / 1 頁 下一頁 »
cvelogic Threat Intelligence