Mkcms Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    4
    Critical Level Threats
    2
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-22818

    MKCMS V6.2 has SQL injection via /ucenter/reg.php name parameter.

    Last Modified: May 05, 2025
    Published: Nov 03, 2022

    CVE-2020-22819

    MKCMS V6.2 has SQL injection via the /ucenter/active.php verify parameter.

    Last Modified: May 05, 2025
    Published: Nov 03, 2022

    CVE-2020-22820

    MKCMS V6.2 has SQL injection via the /ucenter/repass.php name parameter.

    Last Modified: May 05, 2025
    Published: Nov 03, 2022

    CVE-2019-11332

    MKCMS 5.0 allows remote attackers to take over arbitrary user accounts by posting a username and e-mail address to ucenter/repass.php, which triggers e-mail transmission with the password, as demonstrated by 123456.

    Last Modified: Nov 21, 2024
    Published: Apr 18, 2019

    CVE-2019-11078

    MKCMS V5.0 has a CSRF vulnerability to add a new admin user via the ucenter/userinfo.php URI.

    Last Modified: Nov 21, 2024
    Published: Apr 11, 2019
    Items Per Page
    Mkcms_Project Vulnerabilities & Security CVEs | CVE-DB