Known Vulnerabilities for Youke 365 by Youke365
Listed below are 4 of the newest known vulnerabilities associated with "Youke 365" by "Youke365".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2024-0304 json | 9.8 - CRITICAL | 2024-01-08 | 2024-01-11 | |
| CVE-2024-0303 json | 9.8 - CRITICAL | 2024-01-08 | 2024-01-11 | |
| CVE-2018-18242 json | youke365 v1.1.5 has SQL injection via admin/login.html, as demonstrated by username=admin&pass=123456&code=9823&act=login&sub... | 9.8 - CRITICAL | 2018-10-11 | 2018-11-21 |
| CVE-2018-18215 json | In youke365 v1.1.5, admin/user.html has a CSRF vulnerability that can add an user account. | 8.8 - HIGH | 2018-10-11 | 2018-11-21 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Youke365 | Youke 365 | 1.1.5 |