Vulnerabilities > Dedebiz > Dedebiz > 6.2.11

DATE CVE VULNERABILITY TITLE RISK
2023-12-30 CVE-2023-7181 Unspecified vulnerability in Dedebiz
A vulnerability was found in Muyun DedeBIZ up to 6.2.12 and classified as critical.
network
low complexity
dedebiz
7.2
2023-09-27 CVE-2023-43232 Cross-site Scripting vulnerability in Dedebiz 6.2.11
A stored cross-site scripting (XSS) vulnerability in the Website column management function of DedeBIZ v6.2.11 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title parameter.
network
low complexity
dedebiz CWE-79
5.4
2023-09-27 CVE-2023-43234 Unspecified vulnerability in Dedebiz 6.2.11
DedeBIZ v6.2.11 was discovered to contain multiple remote code execution (RCE) vulnerabilities at /admin/file_manage_control.php via the $activepath and $filename parameters.
network
low complexity
dedebiz
critical
9.8