VYPR

Dedecmsv6

by Dedebiz

CVEs (4)

  • CVE-2022-44120CriNov 23, 2022
    risk 0.64cvss 9.8epss 0.01

    dedecmdv6 6.1.9 is vulnerable to SQL Injection. via sys_sql_query.php.

  • CVE-2022-44118CriNov 23, 2022
    risk 0.64cvss 9.8epss 0.02

    dedecmdv6 v6.1.9 is vulnerable to Remote Code Execution (RCE) via file_manage_control.php.

  • CVE-2022-43196CriNov 23, 2022
    risk 0.59cvss 9.1epss 0.01

    dedecmdv6 v6.1.9 is vulnerable to Arbitrary file deletion via file_manage_control.php.

  • CVE-2022-36215HigAug 17, 2022
    risk 0.47cvss 7.2epss 0.02

    DedeBIZ v6 was discovered to contain a remote code execution vulnerability in sys_info.php.