Vulnerabilities (CVE)

Filtered by vendor Fangfa Subscribe
Filtered by product Fdcms
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-35442 1 Fangfa 1 Fdcms 2024-02-28 7.5 HIGH 9.8 CRITICAL
FDCMS (also known as Fangfa Content Management System) 4.0 allows remote attackers to get a webshell in the background via Front/lib/Action/FindexAction.class.php.
CVE-2020-35441 1 Fangfa 1 Fdcms 2024-02-28 7.5 HIGH 9.8 CRITICAL
FDCMS (aka Fangfa Content Management System) 4.0 contains a front-end SQL injection via Admin/Lib/Action/FloginAction.class.php.
CVE-2018-17048 1 Fangfa 1 Fdcms 2024-02-28 5.0 MEDIUM 7.5 HIGH
admin/Lib/Action/FpluginAction.class.php in FDCMS (aka Fangfa Content Manage System) 4.2 allows SQL Injection.