Filtered by vendor Thedigitalcraft
Subscriptions
Filtered by product Atomcms
Subscriptions
Total
11 CVE
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2023-53975 | 1 Thedigitalcraft | 1 Atomcms | 2025-12-23 | 8.2 High |
| Atom CMS 2.0 contains an unauthenticated SQL injection vulnerability that allows remote attackers to manipulate database queries through unvalidated parameters. Attackers can inject malicious SQL code in the 'id' parameter of the admin index page to execute time-based blind SQL injection attacks. | ||||
| CVE-2014-4852 | 1 Thedigitalcraft | 1 Atomcms | 2025-04-12 | N/A |
| SQL injection vulnerability in admin/uploads.php in The Digital Craft AtomCMS, possibly 2.0, allows remote attackers to execute arbitrary SQL commands via the id parameter. | ||||
| CVE-2022-28036 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| AtomCMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_ajax_navigation.php | ||||
| CVE-2022-28035 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| Atom.CMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_ajax_blur-save.php | ||||
| CVE-2022-28034 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| AtomCMS 2.0 is vulnerabie to SQL Injection via Atom.CMS_admin_ajax_list-sort.php | ||||
| CVE-2022-28033 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| Atom.CMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_uploads.php | ||||
| CVE-2022-28032 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| AtomCMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_ajax_pages.php | ||||
| CVE-2022-25489 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 5.4 Medium |
| Atom CMS v2.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the "A" parameter in /widgets/debug.php. | ||||
| CVE-2022-25488 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| Atom CMS v2.0 was discovered to contain a SQL injection vulnerability via the id parameter in /admin/ajax/avatar.php. | ||||
| CVE-2022-25487 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| Atom CMS v2.0 was discovered to contain a remote code execution (RCE) vulnerability via /admin/uploads.php. | ||||
| CVE-2022-24223 | 1 Thedigitalcraft | 1 Atomcms | 2024-11-21 | 9.8 Critical |
| AtomCMS v2.0 was discovered to contain a SQL injection vulnerability via /admin/login.php. | ||||
Page 1 of 1.