Home/Product/code projects content management system
Product

code projects content management system

32 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-7714
<= 2025-07-21
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Global Interactive Design Me
7.5HIGH
CVE-2025-7713
<= 2025-07-21
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Global Interactive De
7.5HIGH
CVE-2026-0567
all versions
A vulnerability was detected in code-projects Content Management System 1.0. The affected element is an unknown function of the fi
7.3HIGH
CVE-2026-0566
all versions
A security vulnerability has been detected in code-projects Content Management System 1.0. Impacted is an unknown function of the
4.7MEDIUM
CVE-2026-0565
all versions
A weakness has been identified in code-projects Content Management System 1.0. This issue affects some unknown processing of the f
7.3HIGH
CVE-2026-0546
all versions
A vulnerability was determined in code-projects Content Management System 1.0. This impacts an unknown function of the file search
7.3HIGH
CVE-2025-15197
all versions
A security flaw has been discovered in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. This vulnerability
4.7MEDIUM
CVE-2025-5633
all versions
A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been rated as critica
6.3MEDIUM
CVE-2025-5632
all versions
A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been declared as crit
6.3MEDIUM
CVE-2025-5631
all versions
A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been classified as cr
7.3HIGH
CVE-2025-29094
all versions
Cross Site Scripting vulnerability in Motivian Content Mangment System v.41.0.0 allows a remote attacker to execute arbitrary code
6.1MEDIUM
CVE-2025-29093
all versions
File Upload vulnerability in Motivian Content Mangment System v.41.0.0 allows a remote attacker to execute arbitrary code via the
8.2HIGH
CVE-2025-4311
all versions
A vulnerability classified as critical was found in itsourcecode Content Management System 1.0. This vulnerability affects unknown
7.3HIGH
CVE-2025-4310
all versions
A vulnerability classified as critical has been found in itsourcecode Content Management System 1.0. This affects an unknown part
4.7MEDIUM
CVE-2025-4301
all versions
A vulnerability classified as critical was found in itsourcecode Content Management System 1.0. Affected by this vulnerability is
7.3HIGH
CVE-2025-4300
all versions
A vulnerability classified as critical has been found in itsourcecode Content Management System 1.0. Affected is an unknown functi
7.3HIGH
CVE-2025-0346
all versions
A vulnerability was found in code-projects Content Management System 1.0. It has been classified as critical. This affects an unkn
4.7MEDIUM
CVE-2024-10758
all versions
A vulnerability, which was classified as critical, was found in code-projects/anirbandutta9 Content Management System and News-Buz
7.3HIGH
CVE-2023-48987
< 7.75
Blind SQL Injection vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allows a remote attac
7.5HIGH
CVE-2023-48986
< 7.75
Cross Site Scripting (XSS) vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allows a remot
6.1MEDIUM
CVE-2023-48985
< 7.75
Cross Site Scripting (XSS) vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allows a remot
6.1MEDIUM
CVE-2023-31816
all versions
IT Sourcecode Content Management System Project In PHP and MySQL With Source Code 1.0.0 is vulnerable to Cross Site Scripting (XSS
6.1MEDIUM
CVE-2021-25197
all versions
Cross-site scripting (XSS) vulnerability in SourceCodester Content Management System v 1.0 allows remote attackers to inject arbit
6.1MEDIUM
CVE-2008-3154
all versions
SQL injection vulnerability in index.php in WebBlizzard CMS allows remote attackers to execute arbitrary SQL commands via the page
CVE-2007-4365
<= 2.0.5
Cross-site scripting (XSS) vulnerability in eXV2 CMS 2.0.5 and earlier allows remote attackers to inject arbitrary web script or H
CVE-2007-1966
all versions
Session fixation vulnerability in eXV2 CMS 2.0.4.3 and earlier allows remote attackers to hijack web sessions by setting the PHPSE
9.1CRITICAL
CVE-2007-1965
<= 2.0.4.3
Multiple cross-site scripting (XSS) vulnerabilities in eXV2 CMS 2.0.4.3 and earlier allow remote attackers to inject arbitrary web
CVE-2007-1950
all versions
Cross-site scripting (XSS) vulnerability in index_cms.php in WebBlizzard CMS allows remote attackers to inject arbitrary web scrip
CVE-2007-1949
all versions
Session fixation vulnerability in WebBlizzard CMS allows remote attackers to hijack web sessions by setting a PHPSESSID cookie.
CVE-2006-7080
<= 2.0.4.3
Directory traversal vulnerability in the avatar upload feature in exV2 2.0.4.3 and earlier allows remote attackers to delete arbit
CVE-2006-7079
<= 2.0.4.3
Variable extraction vulnerability in include/common.php in exV2 2.0.4.3 and earlier allows remote attackers to overwrite arbitrary
9.8CRITICAL
CVE-2006-5030
<= 2.0.4.3
SQL injection vulnerability in modules/messages/index.php in exV2 2.0.4.3 and earlier allows remote authenticated users to execute
threatengine.sh