Skycaiji

Skycaiji

11 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.09%
  • Veröffentlicht 01.03.2025 18:15:34
  • Zuletzt bearbeitet 12.06.2025 20:32:28

A vulnerability, which was classified as critical, was found in Zorlan SkyCaiji 2.9. This affects the function previewAction of the file vendor/skycaiji/app/admin/controller/Tool.php. The manipulation of the argument data leads to server-side request...

  • EPSS 0.23%
  • Veröffentlicht 01.03.2025 14:15:34
  • Zuletzt bearbeitet 12.06.2025 20:26:54

A vulnerability has been found in Zorlan SkyCaiji 2.9 and classified as critical. This vulnerability affects the function fileAction of the file vendor/skycaiji/app/admin/controller/Tool.php. The manipulation of the argument save_data leads to unrest...

  • EPSS 0.17%
  • Veröffentlicht 26.06.2024 20:15:16
  • Zuletzt bearbeitet 18.03.2025 19:15:42

Cross Site Scripting (XSS) vulnerability in skycaiji 2.8 allows attackers to run arbitrary code via /admin/tool/preview.

  • EPSS 0.18%
  • Veröffentlicht 26.06.2024 20:15:16
  • Zuletzt bearbeitet 26.03.2025 20:15:20

A cross-site scripting (XSS) vulnerability in skycaiji v2.8 allows attackers to execute arbitrary web scripts or HTML via a crafted payload using eval(String.fromCharCode()).

  • EPSS 0.19%
  • Veröffentlicht 26.06.2024 20:15:16
  • Zuletzt bearbeitet 13.06.2025 18:10:03

An issue discovered in skycaiji 2.8 allows attackers to run arbitrary code via crafted POST request to /index.php?s=/admin/develop/editor_save.

  • EPSS 0.1%
  • Veröffentlicht 22.06.2024 12:15:11
  • Zuletzt bearbeitet 21.11.2024 09:49:16

A vulnerability has been found in Zorlan SkyCaiji up to 2.8 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Task Handler. The manipulation of the argument onerror leads to cross site scriptin...

Exploit
  • EPSS 0.11%
  • Veröffentlicht 26.05.2023 15:15:14
  • Zuletzt bearbeitet 15.01.2025 20:15:27

skycaiji v2.5.4 is vulnerable to Cross Site Scripting (XSS). Attackers can achieve backend XSS by deploying malicious JSON data.

Exploit
  • EPSS 0.19%
  • Veröffentlicht 07.12.2022 19:15:09
  • Zuletzt bearbeitet 23.04.2025 16:15:26

Skycaiji v2.5.1 was discovered to contain a deserialization vulnerability via /SkycaijiApp/admin/controller/Mystore.php.

Exploit
  • EPSS 2.88%
  • Veröffentlicht 04.05.2022 13:15:08
  • Zuletzt bearbeitet 21.11.2024 06:56:45

Skycaiji v2.4 was discovered to contain a remote code execution (RCE) vulnerability via /SkycaijiApp/admin/controller/Develop.php.

Exploit
  • EPSS 0.19%
  • Veröffentlicht 20.08.2021 14:15:08
  • Zuletzt bearbeitet 21.11.2024 05:08:50

Directory Traversal in Skycaiji v1.3 allows remote attackers to obtain sensitive information via the component 'index.php?m=admin&c=Tool&a=log&file=D%3A%5CphpStudy%5CWWW%5Cindex.php'.