VYPR

Dedecms

by Dedecms

Source repositories

CVEs (176)

  • CVE-2023-5301MedSep 30, 2023
    risk 0.31cvss 4.7epss 0.06

    A vulnerability classified as critical was found in DedeCMS 5.7.111. This vulnerability affects the function AddMyAddon of the file album_add.php. The manipulation of the argument albumUploadFiles leads to os command injection. The attack can be initiated remotely. The exploit…

  • CVE-2024-33401MedApr 29, 2024
    risk 0.29cvss 4.4epss 0.00

    Cross Site Scripting vulnerability in DedeCMS v.5.7.113 allows a remote attacker to run arbitrary code via the mnum parameter.

  • CVE-2024-4790MedMay 14, 2024
    risk 0.28cvss 4.3epss 0.01

    A vulnerability classified as problematic has been found in DedeCMS 5.7.114. This affects an unknown part of the file /sys_verifies.php?action=view. The manipulation of the argument filename with the input ../../../../../etc/passwd leads to path traversal: '../filedir'. It is…

  • CVE-2024-4594MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability, which was classified as problematic, was found in DedeCMS 5.7. Affected is an unknown function of the file /src/dede/sys_safe.php. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed…

  • CVE-2024-4593MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability, which was classified as problematic, has been found in DedeCMS 5.7. This issue affects some unknown processing of the file /src/dede/sys_multiserv.php. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has…

  • CVE-2024-4592MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability classified as problematic was found in DedeCMS 5.7. This vulnerability affects unknown code of the file /src/dede/sys_group_edit.php. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the…

  • CVE-2024-4591MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability classified as problematic has been found in DedeCMS 5.7. This affects an unknown part of the file /src/dede/sys_group_add.php. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to…

  • CVE-2024-4590MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in DedeCMS 5.7. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /src/dede/sys_info.php. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The exploit has been…

  • CVE-2024-4589MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in DedeCMS 5.7. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /src/dede/mytag_edit.php. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit…

  • CVE-2024-4588MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in DedeCMS 5.7. It has been classified as problematic. Affected is an unknown function of the file /src/dede/mytag_add.php. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been…

  • CVE-2024-4587MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in DedeCMS 5.7 and classified as problematic. This issue affects some unknown processing of the file /src/dede/tpl.php. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the…

  • CVE-2024-4586MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability has been found in DedeCMS 5.7 and classified as problematic. This vulnerability affects unknown code of the file /src/dede/shops_delivery.php. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been…

  • CVE-2024-4585MedMay 7, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability, which was classified as problematic, was found in DedeCMS 5.7. This affects an unknown part of the file /src/dede/member_type.php. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been…

  • CVE-2024-3686MedApr 12, 2024
    risk 0.28cvss 4.3epss 0.01

    A vulnerability has been found in DedeCMS 5.7.112-UTF8 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file update_guide.php. The manipulation of the argument files leads to path traversal: '../filedir'. The attack can be launched…

  • CVE-2024-3147MedApr 2, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability classified as problematic was found in DedeCMS 5.7. This vulnerability affects unknown code of the file /src/dede/makehtml_map.php. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the…

  • CVE-2024-3146MedApr 2, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability classified as problematic has been found in DedeCMS 5.7. This affects an unknown part of the file /src/dede/makehtml_rss_action.php. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been…

  • CVE-2024-3145MedApr 2, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in DedeCMS 5.7. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /src/dede/makehtml_js_action.php. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The exploit…

  • CVE-2024-3144MedApr 2, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in DedeCMS 5.7. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /src/dede/makehtml_spec.php. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The…

  • CVE-2024-3143MedApr 2, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in DedeCMS 5.7. It has been classified as problematic. Affected is an unknown function of the file /src/dede/member_rank.php. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been…

  • CVE-2024-2823MedMar 22, 2024
    risk 0.28cvss 4.3epss 0.00

    A vulnerability has been found in DedeCMS 5.7 and classified as problematic. This vulnerability affects unknown code of the file /src/dede/mda_main.php. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to…

Page 8 of 9