Known vulnerabilities in Totaljs CMS

Vendor: Total.js
Software: Totaljs CMS
Software CPE: cpe:2.3:a:total.js:totaljs:*:*:*:*:*:*:*:*
Total vulnerabilities: 4
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Totaljs CMS Totaljs CMS is affected by 4 known vulnerabilities: 3 medium, 1 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU20852 - Improper Access Control
CWE-284 Medium
No
No
- 04.09.2019 SB2019090421
#VU20849 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-15954
CWE-94 Medium
Available
No
- 04.09.2019 SB2019090421
#VU20848 - Improper Control of Interaction Frequency
CWE-799 Medium
No
No
- 04.09.2019 SB2019090421
#VU20846 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-22 Low
No
No
- 04.09.2019 SB2019090421