Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    3
    High Level Threats
    1
    Medium Level Threats
    2
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-10928

    MonoCMS Posts Page opensaved.php cross site scripting

    Last Modified: Nov 22, 2024
    Published: Nov 06, 2024

    CVE-2024-10927

    MonoCMS Account Information Page account.php cross site scripting

    Last Modified: Nov 22, 2024
    Published: Nov 06, 2024

    CVE-2020-28672

    MonoCMS Blog 1.0 is affected by incorrect access control that can lead to remote arbitrary code execution. At monofiles/category.php:27, user input can be saved to category/[foldername]/index.php causing RCE.

    Last Modified: Nov 21, 2024
    Published: Jan 07, 2021

    CVE-2020-25985

    MonoCMS Blog 1.0 is affected by: Arbitrary File Deletion. Any authenticated user can delete files on and off the webserver (php files can be unlinked and not deleted).

    Last Modified: Nov 21, 2024
    Published: Oct 07, 2020

    CVE-2020-25986

    A Cross Site Request Forgery (CSRF) vulnerability in MonoCMS Blog 1.0 allows attackers to change the password of a user.

    Last Modified: Nov 21, 2024
    Published: Oct 06, 2020
    Items Per Page
    Monocms Vulnerabilities & Security CVEs | CVE-DB