Yanyutao0402

Chancms

8 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.05%
  • Veröffentlicht 17.10.2025 15:32:06
  • Zuletzt bearbeitet 24.10.2025 17:15:50

A vulnerability was found in yanyutao0402 ChanCMS up to 3.3.2. This vulnerability affects the function getArticle of the file app\modules\cms\controller\gather.js. The manipulation results in code injection. The attack may be launched remotely. The e...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 17.10.2025 15:02:05
  • Zuletzt bearbeitet 24.10.2025 20:34:32

A vulnerability has been found in yanyutao0402 ChanCMS up to 3.3.2. This affects the function hasUse of the file /cms/model/hasUse. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 17.10.2025 14:15:46
  • Zuletzt bearbeitet 24.10.2025 20:33:14

A flaw has been found in yanyutao0402 ChanCMS up to 3.3.2. Affected by this issue is the function update of the file /cms/article/update. Executing manipulation of the argument cid can lead to sql injection. The attack can be launched remotely. The e...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 17.10.2025 14:15:45
  • Zuletzt bearbeitet 24.10.2025 20:28:48

A vulnerability was detected in yanyutao0402 ChanCMS up to 3.3.2. Affected by this vulnerability is the function findField of the file /cms/article/findField. Performing manipulation of the argument cid results in sql injection. The attack can be ini...

  • EPSS 10.58%
  • Veröffentlicht 10.09.2025 20:15:33
  • Zuletzt bearbeitet 15.09.2025 14:53:01

A security vulnerability has been detected in yanyutao0402 ChanCMS 3.3.0. The affected element is the function CollectController of the file /cms/collect/getArticle. The manipulation of the argument taskUrl leads to server-side request forgery. The a...

Exploit
  • EPSS 2.54%
  • Veröffentlicht 10.09.2025 19:02:06
  • Zuletzt bearbeitet 15.09.2025 14:53:19

A weakness has been identified in yanyutao0402 ChanCMS up to 3.3.0. Impacted is the function Search of the file app/modules/api/service/Api.js. Executing manipulation of the argument key can lead to sql injection. The attack can be launched remotely....

Exploit
  • EPSS 0.04%
  • Veröffentlicht 08.09.2025 21:32:05
  • Zuletzt bearbeitet 10.09.2025 18:06:28

A vulnerability has been found in yanyutao0402 ChanCMS up to 3.3.1. This affects an unknown part of the file /cms/collect/search. Such manipulation of the argument keyword leads to sql injection. The attack can be launched remotely. The exploit has b...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 08.09.2025 20:32:07
  • Zuletzt bearbeitet 10.09.2025 18:05:59

A flaw has been found in yanyutao0402 ChanCMS up to 3.3.1. Affected by this issue is some unknown functionality of the file /cms/article/search. This manipulation of the argument keyword causes sql injection. The attack can be initiated remotely. The...