Filtered by vendor Taogogo Subscriptions
Filtered by product Taocms Subscriptions
Total 24 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-25785 1 Taogogo 1 Taocms 2024-11-21 4.8 Medium
Taocms v2.5Beta5 was discovered to contain a cross-site scripting (XSS) vulnerability via the component Management column.
CVE-2021-25784 1 Taogogo 1 Taocms 2024-11-21 7.2 High
Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Edit Article.
CVE-2021-25783 1 Taogogo 1 Taocms 2024-11-21 7.2 High
Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Article Search.
CVE-2019-7720 1 Taogogo 1 Taocms 2024-11-21 N/A
taocms through 2014-05-24 allows eval injection by placing PHP code in the install.php db_name parameter and then making a config.php request.