VYPR
Medium severity6.1NVD Advisory· Published Sep 1, 2022· Updated Jun 17, 2026

CVE-2022-36583

CVE-2022-36583

Description

DedeCMS V5.7.97 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities at /dede/co_do.php via the dopost, rpok, and aid parameters.

Affected products

2
  • Dedecms/Dedecms2 versions
    cpe:2.3:a:dedecms:dedecms:5.7.97:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:dedecms:dedecms:5.7.97:*:*:*:*:*:*:*
    • (no CPE)range: 5.7.97

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.