Known Vulnerabilities for products from Bijiadao
Listed below are 9 of the newest known vulnerabilities associated with the vendor "Bijiadao".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-7585 json | An issue was discovered in Waimai Super Cms 20150505. web/Lib/Action/PublicAction.class.php allows time-based SQL Injection v... | 9.8 - CRITICAL | 2019-02-07 | 2019-02-08 |
| CVE-2019-7567 json | An issue was discovered in Waimai Super Cms 20150505. admin.php?m=Member&a=adminaddsave has XSS via the username or password ... | 6.1 - MEDIUM | 2019-02-07 | 2019-02-07 |
| CVE-2019-3577 json | An issue was discovered in Waimai Super Cms 20150505. web/Lib/Action/ProductAction.class.php allows blind SQL Injection via t... | 9.8 - CRITICAL | 2019-01-02 | 2019-02-14 |
| CVE-2018-18622 json | An issue was discovered in Waimai Super Cms 20150505. There is XSS via the index.php?m=public&a=doregister username parameter... | 6.1 - MEDIUM | 2018-10-23 | 2018-12-04 |
| CVE-2018-18261 json | In waimai Super Cms 20150505, there is an XSS vulnerability via the /admin.php/Foodcat/addsave fcname parameter. | 6.1 - MEDIUM | 2019-04-15 | 2019-04-15 |
| CVE-2018-18082 json | XSS exists in Waimai Super Cms 20150505 via the fname parameter to the admin.php?m=Food&a=addsave or admin.php?m=Food&a=edits... | 6.1 - MEDIUM | 2018-10-09 | 2018-11-23 |
| CVE-2018-16315 json | In waimai Super Cms 20150505, there is a CSRF vulnerability that can change the configuration via admin.php?m=Config&a=add. | 6.5 - MEDIUM | 2018-09-01 | 2018-10-25 |
| CVE-2018-16157 json | waimai Super Cms 20150505 has a logic flaw allowing attackers to modify a price, before form submission, by observing data in... | 5.3 - MEDIUM | 2018-08-30 | 2020-08-24 |
| CVE-2018-15570 json | In waimai Super Cms 20150505, there is stored XSS via the /admin.php/Foodcat/editsave fcname parameter. | 4.8 - MEDIUM | 2018-08-20 | 2018-10-19 |
Known software with vulnerabilities from Bijiadao
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Bijiadao | Waimai Super Cms | 20150505 |