Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    1
    Critical Level Threats
    0
    High Level Threats
    4
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2021-37787

    The unprivileged administrative interface in ABO.CMS version 5.8 through v.5.9.3 is affected by a SQL Injection vulnerability via a HTTP POST request to the TinyMCE module

    Last Modified: May 21, 2025
    Published: Mar 11, 2025

    CVE-2024-25227

    SQL Injection vulnerability in ABO.CMS version 5.8, allows remote attackers to execute arbitrary code, cause a denial of service (DoS), escalate privileges, and obtain sensitive information via the tb_login parameter in admin login page.

    Last Modified: Mar 26, 2025
    Published: Mar 15, 2024

    CVE-2023-46952

    Cross Site Scripting vulnerability in ABO.CMS v.5.9.3 allows an attacker to execute arbitrary code via a crafted payload to the Referer header.

    Last Modified: Jun 02, 2025
    Published: Jan 17, 2024

    CVE-2023-48858

    A Cross-site scripting (XSS) vulnerability in login page php code in Armex ABO.CMS 5.9 allows remote attackers to inject arbitrary web script or HTML via the login.php? URL part.

    Last Modified: Jun 02, 2025
    Published: Jan 17, 2024

    CVE-2023-46953

    SQL Injection vulnerability in ABO.CMS v.5.9.3, allows remote attackers to execute arbitrary code via the d parameter in the Documents module.

    Last Modified: Jun 17, 2025
    Published: Jan 06, 2024
    Items Per Page