Unlcms is a content management system with a focused product portfolio, where the observed vulnerability exposure centers on cross-site request forgery flaws arising from session-handling and state-management mechanics in web applications. This compact vendor profile reflects the application-layer attack surface typical of CMS platforms; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Unlcms over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-17070MEDIUM An issue was discovered in UNL-CMS 7.59. A CSRF attack can update the website settings via ?q=admin%2Fconfig%2Fsystem%2Fsite-information&render=overlay&render=overlay. | Sep 15, 2018 | 6.5 | 22 | NO | NO |
CVE-2018-17069MEDIUM An issue was discovered in UNL-CMS 7.59. A CSRF attack can create new content via ?q=node%2Fadd%2Farticle&render=overlay&render=overlay. | Sep 15, 2018 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Unlcms.
Media articles that mention a CVE ID that affects a product developed by Unlcms — matched by CVE ID, not by vendor name.