Vulnerabilities (CVE)

Filtered by vendor Artmedic Webdesign Subscribe
Filtered by product Artmedic Cms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-5600 1 Artmedic Webdesign 1 Artmedic Cms 2024-11-21 6.8 MEDIUM N/A
Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftps, (3) ssh2.sftp, or (4) ssh2.scp URL, in the page parameter, for which PHP remote file inclusion is blocked only for http, https, and ftp URLs.
CVE-2007-5489 1 Artmedic Webdesign 1 Artmedic Cms 2024-11-21 7.5 HIGH N/A
Directory traversal vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.