Vulnerabilities > Dedebiz

DATE CVE VULNERABILITY TITLE RISK
2024-08-29 CVE-2024-44716 Cross-site Scripting vulnerability in Dedebiz 6.3.0
A cross-site scripting (XSS) vulnerability in DedeBIZ v6.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
network
low complexity
dedebiz CWE-79
6.1
2024-08-29 CVE-2024-44717 Cross-site Scripting vulnerability in Dedebiz 6.3.0
A cross-site scripting (XSS) vulnerability in DedeBIZ v6.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
network
low complexity
dedebiz CWE-79
6.1
2024-08-18 CVE-2024-7906 Unrestricted Upload of File with Dangerous Type vulnerability in Dedebiz 6.3.0
A vulnerability classified as critical was found in DedeBIZ 6.3.0.
network
low complexity
dedebiz CWE-434
8.8
2024-08-18 CVE-2024-7905 Unrestricted Upload of File with Dangerous Type vulnerability in Dedebiz 6.3.0
A vulnerability classified as critical has been found in DedeBIZ 6.3.0.
network
low complexity
dedebiz CWE-434
7.2
2024-08-18 CVE-2024-7904 Unrestricted Upload of File with Dangerous Type vulnerability in Dedebiz 6.3.0
A vulnerability was found in DedeBIZ 6.3.0.
network
low complexity
dedebiz CWE-434
8.8
2024-08-18 CVE-2024-7903 Unrestricted Upload of File with Dangerous Type vulnerability in Dedebiz 6.3.0
A vulnerability was found in DedeBIZ 6.3.0.
network
low complexity
dedebiz CWE-434
8.8
2024-01-15 CVE-2024-0557 Cross-site Scripting vulnerability in Dedebiz 6.3.0
A vulnerability, which was classified as problematic, was found in DedeBIZ 6.3.0.
network
low complexity
dedebiz CWE-79
5.4
2024-01-15 CVE-2024-0558 SQL Injection vulnerability in Dedebiz 6.3.0
A vulnerability has been found in DedeBIZ 6.3.0 and classified as critical.
network
low complexity
dedebiz CWE-89
7.2
2023-12-30 CVE-2023-7181 Unrestricted Upload of File with Dangerous Type vulnerability in Dedebiz
A vulnerability was found in Muyun DedeBIZ up to 6.2.12 and classified as critical.
network
low complexity
dedebiz CWE-434
7.2
2023-12-14 CVE-2023-31546 Cross-site Scripting vulnerability in Dedebiz 6.0.3
Cross Site Scripting (XSS) vulnerability in DedeBIZ v6.0.3 allows attackers to run arbitrary code via the search feature.
network
low complexity
dedebiz CWE-79
critical
9.6