All 7 CVE vulnerabilities found in CMSsite, with AI-generated Chinese analysis, references, and POCs.
Vendor: VictorAlagwu
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2019-25697 | CMSsite 1.0 SQL Injection via category.php CWE-89 | 8.2 | High | 2026-04-12 |
| CVE-2019-25682 | CMSsite 1.0 Cross-Site Request Forgery via users.php CWE-352 | 4.3 | Medium | 2026-04-05 |
| CVE-2019-25674 | CMSsite 1.0 SQL Injection via post Parameter CWE-89 | 8.2 | High | 2026-04-05 |
| CVE-2020-37076 | Victor CMS 1.0 - 'post' SQL Injection CWE-89 | 8.2 | High | 2026-02-03 |
| CVE-2020-37072 | Victor CMS 1.0 - 'comment_author' Persistent Cross-Site Scripting CWE-79 | 7.2 | High | 2026-02-03 |
| CVE-2020-37073 | Victor CMS 1.0 - Authenticated Arbitrary File Upload CWE-434 | 8.8 | High | 2026-02-03 |
| CVE-2020-36942 | Victor CMS 1.0 - File Upload To RCE CWE-434 | 8.8 | High | 2026-01-27 |
All 7 known CVE vulnerabilities affecting CMSsite with full Chinese analysis, references, and POCs where available.