Products: 2
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    1
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-21729

    JEECMS x1.1 contains a stored cross-site scripting (XSS) vulnerability in the component of /member-vipcenter.htm, which allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

    Last Modified: Nov 21, 2024
    Published: Oct 07, 2021

    CVE-2020-20799

    JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the commentText parameter.

    Last Modified: Nov 21, 2024
    Published: Sep 30, 2021

    CVE-2018-20528

    JEECMS 9 has SSRF via the ueditor/getRemoteImage.jspx upfile parameter.

    Last Modified: Nov 21, 2024
    Published: Dec 27, 2018

    CVE-2018-19544

    JEECMS 9.3 has CSRF via the api/admin/content/save URI to add news.

    Last Modified: Nov 21, 2024
    Published: Nov 26, 2018

    CVE-2018-19545

    JEECMS 9.3 has CSRF via the api/admin/role/save URI to add a user.

    Last Modified: Nov 21, 2024
    Published: Nov 26, 2018
    Items Per Page