VYPR

Utcms

by Utcms Project

CVEs (3)

  • CVE-2025-56407HigSep 10, 2025
    risk 0.57cvss 8.8epss 0.00

    A vulnerability has been found in HuangDou UTCMS V9 and classified as critical. This vulnerability affects the function RunSql of the file app/modules/ut-data/admin/mysql.php. The manipulation of the argument sql leads to sql injection. The attack can be initiated remotely. The…

  • CVE-2025-9402MedAug 25, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in HuangDou UTCMS 9. This issue affects some unknown processing of the file app/modules/ut-frame/admin/update.php of the component Config Handler. Performing manipulation of the argument UPDATEURL results in server-side request forgery. The attack is…

  • CVE-2025-9401LowAug 25, 2025
    risk 0.24cvss 3.7epss 0.00

    A vulnerability has been found in HuangDou UTCMS 9. This vulnerability affects unknown code of the file app/modules/ut-frame/admin/login.php of the component Login. Such manipulation of the argument code leads to incorrect comparison. The attack can be executed remotely. The…