VYPR

Dede CMS

by Dede CMS

CVEs (2)

  • CVE-2026-51077Jul 27, 2026
    risk 0.00cvss epss 0.00

    SQL injection vulnerability in Dede CMS v.5.7.118 allows a remote attacker to obtain sensitive information via the sqlquery parameter of the sys_sql_query.php component

  • CVE-2026-51078Jul 27, 2026
    risk 0.00cvss epss 0.00

    An issue in Dede CMS v.5.7.118 allows a remote attacker to obtain sensitive information via the str parameter of the file_manage_control.php component