Vulnerabilities (CVE)

Filtered by vendor Siteframe Subscribe
Filtered by product Siteframe Cms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2443 1 Siteframe 1 Siteframe Cms 2023-12-10 5.0 MEDIUM N/A
Siteframe 3.2.3, and other 3.2.x versions, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.
CVE-2008-3256 1 Siteframe 2 Siteframe Beaumont, Siteframe Cms 2023-12-10 7.5 HIGH N/A
SQL injection vulnerability in folder.php in Siteframe CMS 3.2.3 and earlier, and Siteframe Beaumont 5.0.5 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter.