Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.9 MEDIUM
CVE-2016-20053 — Redaxo CMS 5.2 Cross-Site Request Forgery via users endpoint

Redaxo CMS 5.2 contains a cross-site request forgery vulnerability that allows unauthenticated attackers to create administrative user accounts by tricking authenticated administrators into visiting …

redaxo_cms redaxo | Remote | Cross-Site Request Forgery
Apr 04, 2026 Apr 14, 2026
Apr 04, 2026
Apr 14, 2026
9.8 CRITICAL
CVE-2016-20052 — Snews CMS 1.7 Unrestricted File Upload via snews_files

Snews CMS 1.7 contains an unrestricted file upload vulnerability that allows unauthenticated attackers to upload arbitrary files including PHP executables to the snews_files directory. Attackers can …

snews | Remote | Misconfiguration
Apr 04, 2026 Apr 14, 2026
Apr 04, 2026
Apr 14, 2026
6.9 MEDIUM
CVE-2016-20051 — Snews CMS 1.7 Cross-Site Request Forgery via changeup

Snews CMS 1.7 contains a cross-site request forgery vulnerability that allows attackers to change administrator credentials without authentication by crafting malicious HTML forms. Attackers can tric…

snews | Remote | Cross-Site Request Forgery
Apr 04, 2026 Apr 14, 2026
Apr 04, 2026
Apr 14, 2026
6.9 MEDIUM
CVE-2016-20050 — NetSchedScan 1.0 Buffer Overflow Denial of Service

NetSchedScan 1.0 contains a buffer overflow vulnerability in the scan Hostname/IP field that allows local attackers to crash the application by supplying an oversized input string. Attackers can past…

netschedscan | Memory Corruption
Apr 04, 2026 Apr 14, 2026
Apr 04, 2026
Apr 14, 2026
Showing 20 of 5524 Results