Vulnerabilities > Phpyun

DATE CVE VULNERABILITY TITLE RISK
2021-05-21 CVE-2020-23768 Information Exposure vulnerability in PHPyun 4.6
An information disclosure vulnerability was discovered in alipay_function.php in the log file of Alibaba payment interface on PHPPYUN prior to version 5.0.1.
network
low complexity
phpyun CWE-200
5.0
2018-10-29 CVE-2018-18713 Path Traversal vulnerability in PHPyun 4.6
The function down_sql_action() in /admin/model/database.class.php in PHPYun 4.6 allows remote attackers to read arbitrary files via directory traversal in an m=database&c=down_sql&name=../ URI.
network
low complexity
phpyun CWE-22
7.5
2018-10-23 CVE-2018-18626 Unspecified vulnerability in PHPyun 4.6
An issue was discovered in PHPYun V4.6.
network
low complexity
phpyun
7.5
2011-04-27 CVE-2010-4796 SQL Injection vulnerability in PHPyun 1.1.6
Multiple SQL injection vulnerabilities in PHPYun 1.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) provinceid parameter to search.php and the (2) e parameter to resumeview.php.
network
low complexity
phpyun CWE-89
7.5