CVE-2026-3743
- EPSS 0.03%
- Veröffentlicht 08.03.2026 15:02:10
- Zuletzt bearbeitet 10.03.2026 18:53:10
A flaw has been found in YiFang CMS 2.0.5. This affects the function update of the file app/db/admin/D_singlePageGroup.php. Executing a manipulation of the argument Name can lead to cross site scripting. It is possible to launch the attack remotely. ...
CVE-2026-3742
- EPSS 0.03%
- Veröffentlicht 08.03.2026 15:02:07
- Zuletzt bearbeitet 10.03.2026 18:54:02
A vulnerability was detected in YiFang CMS 2.0.5. The impacted element is the function update of the file app/db/admin/D_singlePage.php. Performing a manipulation of the argument Title results in cross site scripting. It is possible to initiate the a...
CVE-2026-3741
- EPSS 0.03%
- Veröffentlicht 08.03.2026 14:32:10
- Zuletzt bearbeitet 10.03.2026 18:54:22
A security vulnerability has been detected in YiFang CMS 2.0.5. The affected element is the function update of the file app/db/admin/D_friendLink.php. Such manipulation of the argument linkName leads to cross site scripting. The attack may be perform...
CVE-2026-2934
- EPSS 0.04%
- Veröffentlicht 22.02.2026 08:02:08
- Zuletzt bearbeitet 24.02.2026 17:23:16
A security vulnerability has been detected in YiFang CMS up to 2.0.5. This impacts the function update of the file app/db/admin/D_friendLinkGroup.php of the component Extended Management Module. The manipulation of the argument Name leads to cross si...
CVE-2026-2933
- EPSS 0.04%
- Veröffentlicht 22.02.2026 07:32:11
- Zuletzt bearbeitet 24.02.2026 17:25:06
A weakness has been identified in YiFang CMS up to 2.0.5. This affects the function update of the file app/db/admin/D_adManage.php of the component Extended Management Module. Executing a manipulation of the argument Name can lead to cross site scrip...
CVE-2026-2932
- EPSS 0.05%
- Veröffentlicht 22.02.2026 07:32:08
- Zuletzt bearbeitet 24.02.2026 17:35:11
A security flaw has been discovered in YiFang CMS up to 2.0.5. The impacted element is the function update of the file app/db/admin/D_adPosition.php of the component Extended Management Module. Performing a manipulation of the argument name/index res...