CVE-2024-7906
- EPSS 0.14%
- Veröffentlicht 18.08.2024 14:15:09
- Zuletzt bearbeitet 27.09.2024 17:54:51
A vulnerability classified as critical was found in DedeBIZ 6.3.0. This vulnerability affects the function get_mime_type of the file /admin/dialog/select_images_post.php of the component Attachment Settings. The manipulation of the argument upload le...
CVE-2024-7905
- EPSS 0.12%
- Veröffentlicht 18.08.2024 12:15:04
- Zuletzt bearbeitet 20.08.2024 19:35:43
A vulnerability classified as critical has been found in DedeBIZ 6.3.0. This affects the function AdminUpload of the file admin/archives_do.php. The manipulation of the argument litpic leads to unrestricted upload. It is possible to initiate the atta...
CVE-2024-7904
- EPSS 0.15%
- Veröffentlicht 18.08.2024 09:15:04
- Zuletzt bearbeitet 20.08.2024 19:35:21
A vulnerability was found in DedeBIZ 6.3.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file admin/file_manage_control.php of the component File Extension Handler. The manipulation of the argument upfile...
CVE-2024-7903
- EPSS 0.15%
- Veröffentlicht 18.08.2024 07:15:03
- Zuletzt bearbeitet 20.08.2024 19:34:47
A vulnerability was found in DedeBIZ 6.3.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file admin/media_add.php of the component File Extension Handler. The manipulation of the argument upfile1...
CVE-2024-0558
- EPSS 0.02%
- Veröffentlicht 15.01.2024 17:15:10
- Zuletzt bearbeitet 21.11.2024 08:46:52
A vulnerability has been found in DedeBIZ 6.3.0 and classified as critical. This vulnerability affects unknown code of the file /admin/makehtml_freelist_action.php. The manipulation of the argument startid leads to sql injection. The attack can be in...
CVE-2024-0557
- EPSS 0.06%
- Veröffentlicht 15.01.2024 17:15:09
- Zuletzt bearbeitet 21.11.2024 08:46:52
A vulnerability, which was classified as problematic, was found in DedeBIZ 6.3.0. This affects an unknown part of the component Website Copyright Setting. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely....
CVE-2023-7181
- EPSS 0.09%
- Veröffentlicht 30.12.2023 18:15:41
- Zuletzt bearbeitet 21.11.2024 08:45:27
A vulnerability was found in Muyun DedeBIZ up to 6.2.12 and classified as critical. Affected by this issue is some unknown functionality of the component Add Attachment Handler. The manipulation leads to unrestricted upload. The attack may be launche...
CVE-2023-31546
- EPSS 21.2%
- Veröffentlicht 14.12.2023 01:15:07
- Zuletzt bearbeitet 21.11.2024 08:02:01
Cross Site Scripting (XSS) vulnerability in DedeBIZ v6.0.3 allows attackers to run arbitrary code via the search feature.
CVE-2023-6755
- EPSS 0.13%
- Veröffentlicht 13.12.2023 13:15:09
- Zuletzt bearbeitet 21.11.2024 08:44:29
A vulnerability was found in DedeBIZ 6.2 and classified as critical. This issue affects some unknown processing of the file /src/admin/content_batchup_action.php. The manipulation of the argument endid leads to sql injection. The attack may be initia...
CVE-2023-5268
- EPSS 0.05%
- Veröffentlicht 29.09.2023 16:15:10
- Zuletzt bearbeitet 21.11.2024 08:41:24
A vulnerability was found in DedeBIZ 6.2 and classified as critical. This issue affects some unknown processing of the file /src/admin/makehtml_taglist_action.php. The manipulation of the argument mktime leads to sql injection. The attack may be init...