Products: 2
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-40457

    Reflected XSS in LMS

    Last Modified: Jun 18, 2026
    Published: Jun 18, 2026

    CVE-2026-40456

    OS Command Injection in LMS

    Last Modified: Jun 18, 2026
    Published: Jun 18, 2026

    CVE-2026-40455

    SQL Injection in LMS

    Last Modified: Jun 18, 2026
    Published: Jun 18, 2026

    CVE-2026-48559

    Lightweight Music Server 3.76.0 Stored XSS via Media File Metadata Tags

    Last Modified: Jul 28, 2026
    Published: Jun 01, 2026

    CVE-2018-1000535

    lms version <= LMS_011123 contains a Local File Disclosure vulnerability in File reading functionality in LMS module that can result in Possible to read files on the server. This attack appear to be exploitable via GET parameter. This vulnerability appears to have been fixed in after commit 254765e.

    Last Modified: Nov 21, 2024
    Published: Jun 26, 2018
    Items Per Page
    Lms Vulnerabilities & Security CVEs | CVE-DB