Products: 1
    Vulnerabilities: 15
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    13
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-18446

    Cross Site Scripting (XSS) vulnerability exists in YUNUCMS 1.1.9 via the param parameter in the insertContent function in ContentModel.php.

    Last Modified: Nov 21, 2024
    Published: Aug 12, 2021

    CVE-2020-18445

    Cross Site Scripting (XSS) vulnerability exists in YUNUCMS 1.1.9 via the upurl function in Page.php.

    Last Modified: Nov 21, 2024
    Published: Aug 12, 2021

    CVE-2019-5311

    An issue was discovered in YUNUCMS V1.1.8. app/index/controller/Show.php has an XSS vulnerability via the index.php/index/show/index cw parameter.

    Last Modified: Nov 21, 2024
    Published: Jan 04, 2019

    CVE-2019-5310

    YUNUCMS 1.1.8 has XSS in app/admin/controller/System.php because crafted data can be written to the sys.php file, as demonstrated by site_title in an admin/system/basic POST request.

    Last Modified: Nov 21, 2024
    Published: Jan 04, 2019

    CVE-2018-19180

    statics/app/index/controller/Install.php in YUNUCMS 1.1.5 (if install.lock is not present) allows remote attackers to execute arbitrary PHP code by placing this code in the index.php?s=index/install/setup2 DB_PREFIX field, which is written to database.php.

    Last Modified: Nov 21, 2024
    Published: Nov 11, 2018
    Items Per Page