Skip to main content

Vendor archive

sinecms CVEs

Beta · best-effort

4 CVEs tagged to vendor sinecms0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2008-7163

Published Sep 4, 2009

Directory traversal vulnerability in mods/Integrated/index.php in SineCMS 2.3.5 and earlier, when register_globals is enabled, allows remote attackers to include and execute arbit…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6366

Published Dec 15, 2007

Multiple SQL injection vulnerabilities in SineCMS 2.3.4 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to mods/Calendar/index.php, a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-6367

Published Dec 15, 2007

Multiple cross-site scripting (XSS) vulnerabilities in the guestbook in SineCMS 2.3.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) usernam…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2357

Published Apr 30, 2007

Cross-site scripting (XSS) vulnerability in mods/Core/result.php in SineCms 2.3.4 allows remote attackers to inject arbitrary web script or HTML via the stringa parameter.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1