Known Vulnerabilities for products from Yunucms
Listed below are 15 of the newest known vulnerabilities associated with the vendor "Yunucms".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-18446 json | Cross Site Scripting (XSS) vulnerability exists in YUNUCMS 1.1.9 via the param parameter in the insertContent function in Con... | 4.8 - MEDIUM | 2021-08-12 | 2021-08-13 |
| CVE-2020-18445 json | Cross Site Scripting (XSS) vulnerability exists in YUNUCMS 1.1.9 via the upurl function in Page.php. | 6.1 - MEDIUM | 2021-08-12 | 2021-08-13 |
| CVE-2019-5311 json | An issue was discovered in YUNUCMS V1.1.8. app/index/controller/Show.php has an XSS vulnerability via the index.php/index/sho... | 6.1 - MEDIUM | 2019-01-04 | 2019-01-10 |
| CVE-2019-5310 json | YUNUCMS 1.1.8 has XSS in app/admin/controller/System.php because crafted data can be written to the sys.php file, as demonstr... | 6.1 - MEDIUM | 2019-01-04 | 2019-01-10 |
| CVE-2018-19181 json | statics/ueditor/php/vendor/Local.class.php in YUNUCMS 1.1.5 allows arbitrary file deletion via the statics/ueditor/php/contro... | 7.5 - HIGH | 2018-11-11 | 2018-12-12 |
| CVE-2018-19180 json | statics/app/index/controller/Install.php in YUNUCMS 1.1.5 (if install.lock is not present) allows remote attackers to execute... | 9.8 - CRITICAL | 2018-11-11 | 2018-12-12 |
| CVE-2018-18726 json | An XSS issue was discovered in admin/sitelink/editsitelink?id=16 in YUNUCMS 1.1.5. | 4.8 - MEDIUM | 2018-10-29 | 2018-12-04 |
| CVE-2018-18725 json | An XSS issue was discovered in admin/banner/editbanner?id=20 in YUNUCMS 1.1.5. | 4.8 - MEDIUM | 2018-10-29 | 2018-12-04 |
| CVE-2018-18724 json | An XSS issue was discovered in index.php/admin/category/editcategory?id=73 in YUNUCMS 1.1.5. | 4.8 - MEDIUM | 2018-10-29 | 2018-12-04 |
| CVE-2018-18723 json | An XSS issue was discovered in index.php/admin/area/editarea/id/110000 in YUNUCMS 1.1.5. | 4.8 - MEDIUM | 2018-10-29 | 2018-12-04 |
| CVE-2018-18722 json | An XSS issue was discovered in admin/content/editcontent?id=29&gopage=1 in YUNUCMS 1.1.5. | 4.8 - MEDIUM | 2018-10-29 | 2018-12-04 |
| CVE-2018-18721 json | An XSS issue was discovered in admin/link/editlink?id=5 in YUNUCMS 1.1.5. | 4.8 - MEDIUM | 2018-10-29 | 2018-12-04 |
| CVE-2018-18720 json | An XSS issue was discovered in index.php/admin/system/basic in YUNUCMS 1.1.5. | 4.8 - MEDIUM | 2018-10-29 | 2018-12-04 |
| CVE-2018-17322 json | Cross-site scripting (XSS) vulnerability in index.php/index/category/index in YUNUCMS 1.1.4 allows remote attackers to inject... | 6.1 - MEDIUM | 2018-09-22 | 2018-11-09 |
| CVE-2018-9993 json | YUNUCMS 1.0.7 has XSS via the content title on an admin/content/addcontent/cid/## page (aka a news center page). | 4.8 - MEDIUM | 2018-04-10 | 2018-05-16 |
Known software with vulnerabilities from Yunucms
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Yunucms | Yunucms | 1.0.7 |