Vulnerabilities > Youdiancms

DATE CVE VULNERABILITY TITLE RISK
2024-08-01 CVE-2024-7330 Server-Side Request Forgery (SSRF) vulnerability in Youdiancms 7.0
A vulnerability has been found in YouDianCMS 7 and classified as critical.
network
low complexity
youdiancms CWE-918
6.3
2024-07-31 CVE-2024-7328 Unspecified vulnerability in Youdiancms 7.0
A vulnerability, which was classified as problematic, has been found in YouDianCMS 7.
network
low complexity
youdiancms
5.3
2024-07-31 CVE-2024-7329 Unrestricted Upload of File with Dangerous Type vulnerability in Youdiancms 7.0
A vulnerability, which was classified as critical, was found in YouDianCMS 7.
network
low complexity
youdiancms CWE-434
critical
9.8
2022-06-15 CVE-2022-32299 SQL Injection vulnerability in Youdiancms 9.5.0
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the id parameter at /App/Lib/Action/Admin/SiteAction.class.php.
network
low complexity
youdiancms CWE-89
8.8
2022-06-15 CVE-2022-32300 SQL Injection vulnerability in Youdiancms 9.5.0
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the MailSendID parameter at /App/Lib/Action/Admin/MailAction.class.php.
network
low complexity
youdiancms CWE-89
8.8
2022-06-15 CVE-2022-32301 SQL Injection vulnerability in Youdiancms 9.5.0
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the IdList parameter at /App/Lib/Action/Home/ApiAction.class.php.
network
low complexity
youdiancms CWE-89
critical
9.8
2021-08-27 CVE-2020-18116 SQL Injection vulnerability in Youdiancms 8.0
A lack of filtering for searched keywords in the search bar of YouDianCMS 8.0 allows attackers to perform SQL injection.
network
low complexity
youdiancms CWE-89
8.8