VYPR
Vendor

Wanxing Technology

Products
3
CVEs
3
Across products
4
Status
Private

Products

3

Recent CVEs

3
  • CVE-2024-48781CriOct 15, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in Wanxing Technology Yitu Project Management Kirin Edition 2.3.6 allows a remote attacker to execute arbitrary code via a specially constructed so file/opt/EdrawProj-2/plugins/imageformat.

  • CVE-2024-48779CriOct 15, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in Wanxing Technology's Yitu project Management Software 3.2.2 allows a remote attacker to execute arbitrary code via the platformpluginpath parameter to specify that the qt plugin loads the directory.

  • CVE-2024-24122LowOct 2, 2024
    risk 0.22cvss 3.3epss 0.01

    A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system…