Skip to main content

Vendor/product archive

acc / dm_corporative_cms CVEs

Beta · best-effort

9 CVEs tagged to acc / dm_corporative_cms4 Critical, 0 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2025-40662

Published Jun 10, 2025

Absolute path disclosure vulnerability in DM Corporative CMS. This vulnerability allows an attacker to view the contents of webroot/file, if navigating to a non-existent file.

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-40661

Published Jun 10, 2025

An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-40660

Published Jun 10, 2025

An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-40659

Published Jun 10, 2025

An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-40658

Published Jun 10, 2025

An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-40657

Published Jun 10, 2025

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the codform para…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-40656

Published Jun 10, 2025

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the cod paramete…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-40655

Published Jun 10, 2025

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the name paramet…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-40654

Published Jun 10, 2025

A SQL injection vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to retrieve, create, update and delete databases through the name and cod…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1