Known Vulnerabilities for CRMEB by ZhongBangKeJi
Listed below are 5 of the newest known vulnerabilities associated with "CRMEB" by "ZhongBangKeJi".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-85212 json | CRMEB contains an authentication bypass vulnerability in the verifyAuth() method of SystemRoleServices.php that returns true ... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-85177 json | CRMEB through 6.0.0 fails to validate message ownership in the edit_message handler of MessageSystemController.php, allowing ... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-85040 json | A weakness has been identified in ZhongBangKeJi CRMEB up to 6.0.0. Affected by this vulnerability is the function eval of the... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2023-30185 json | CRMEB v4.4 to v4.6 was discovered to contain an arbitrary file upload vulnerability via the component \attachment\SystemAttac... | Not Provided | 2023-05-08 | 2026-07-09 |
| CVE-2020-25466 json | A SSRF vulnerability exists in the downloadimage interface of CRMEB 3.0, which can remotely download arbitrary files on the s... | Not Provided | 2020-10-23 | 2026-07-09 |