Home/Product/lmxcms
Product

lmxcms

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-4541
all versions
A vulnerability classified as critical has been found in LmxCMS 1.41. Affected is the function manageZt of the file c\admin\ZtActi
6.3MEDIUM
CVE-2025-1465
all versions
A vulnerability, which was classified as problematic, was found in lmxcms 1.41. Affected is an unknown function of the file db.inc
4.1MEDIUM
CVE-2024-8523
<= 1.4
A vulnerability was found in lmxcms up to 1.4 and classified as critical. Affected by this issue is the function formatData of the
4.7MEDIUM
CVE-2021-35437
all versions
SQL injection vulnerability in LMXCMS v.1.4 allows attacker to execute arbitrary code via the TagsAction.class.
9.8CRITICAL
CVE-2023-46958
all versions
An issue in lmxcms v.1.41 allows a remote attacker to execute arbitrary code via a crafted script to the admin.php file.
9.8CRITICAL
CVE-2023-5017
<= 1.41
A vulnerability was found in lmxcms up to 1.41. It has been rated as critical. Affected by this issue is some unknown functionalit
5.5MEDIUM
CVE-2023-29598
all versions
lmxcms v1.4.1 was discovered to contain a SQL injection vulnerability via the setbook parameter at index.php.
9.8CRITICAL
CVE-2023-1322
all versions
A vulnerability was found in lmxcms 1.41 and classified as critical. Affected by this issue is the function reply of the file Book
6.3MEDIUM
CVE-2023-1321
all versions
A vulnerability has been found in lmxcms 1.41 and classified as critical. Affected by this vulnerability is the function update of
6.3MEDIUM
CVE-2023-23136
all versions
lmxcms v1.41 was discovered to contain an arbitrary file deletion vulnerability via BackdbAction.class.php.
6.5MEDIUM
CVE-2022-48094
all versions
lmxcms v1.41 was discovered to contain an arbitrary file read vulnerability via TemplateAction.class.php.
4.9MEDIUM
threatengine.sh