Vulnerabilities (CVE)

Filtered by vendor Fabian Subscribe
Filtered by product Document Management System
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-56289 1 Fabian 1 Document Management System 2025-09-18 N/A 5.4 MEDIUM
code-projects Document Management System 1.0 has a Cross Site Scripting (XSS) vulnerability, where attackers can leak admin's cookie information by entering malicious XSS code in the Company field when adding files.
CVE-2025-8171 1 Fabian 1 Document Management System 2025-08-05 6.5 MEDIUM 6.3 MEDIUM
A vulnerability, which was classified as critical, has been found in code-projects Document Management System 1.0. This issue affects some unknown processing of the file /insert.php. The manipulation of the argument uploaded_file leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-8433 1 Fabian 1 Document Management System 2025-08-05 5.5 MEDIUM 5.4 MEDIUM
A vulnerability was found in code-projects Document Management System 1.0 and classified as critical. This issue affects the function unlink of the file /dell.php. The manipulation of the argument ID leads to path traversal. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.