empirecms vulnerabilities
CVEs whose affected-version data names the empirecms package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2025-15423Medium· 6.3A vulnerability has been found in EmpireSoft EmpireCMS up to 8.0
A vulnerability has been found in EmpireSoft EmpireCMS up to 8.0. Impacted is the function CheckSaveTranFiletype of the file e/class/connect.php. Such manipulation leads to unrestricted upload. The attack may be launched remotely. The ex…
▾ Sunlitphome · empirecmsEPSS 0.37%via NVD
CVE-2025-15422Medium· 5.3A flaw has been found in EmpireSoft EmpireCMS up to 8.0
A flaw has been found in EmpireSoft EmpireCMS up to 8.0. This issue affects the function egetip of the file e/class/connect.php of the component IP Address Handler. This manipulation causes protection mechanism failure. The attack may be…
▾ Sunlitphome · empirecmsEPSS 1.3%via NVD