Eyoucms

Eyoucms

78 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.23%
  • Veröffentlicht 07.08.2025 00:00:00
  • Zuletzt bearbeitet 14.08.2025 20:10:55

EyouCMS 1.6.7 is vulnerable to Cross Site Scripting (XSS) in /login.php?m=admin&c=System&a=web&lang=cn.

  • EPSS 0.59%
  • Veröffentlicht 14.11.2024 15:15:08
  • Zuletzt bearbeitet 19.11.2024 19:01:51

A vulnerability classified as critical has been found in EyouCMS up to 1.6.7. Affected is an unknown function of the component Website Logo Handler. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely. The expl...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 14.11.2024 15:15:07
  • Zuletzt bearbeitet 19.11.2024 18:42:44

A vulnerability was found in EyouCMS 1.51. It has been rated as critical. This issue affects the function editFile of the file application/admin/logic/FilemanagerLogic.php. The manipulation of the argument activepath leads to path traversal. The atta...

  • EPSS 0.53%
  • Veröffentlicht 28.10.2024 20:15:05
  • Zuletzt bearbeitet 18.04.2025 01:15:07

An issue in eyouCMS v.1.6.7 allows a remote attacker to obtain sensitive information via a crafted script to the post parameter.

  • EPSS 0.37%
  • Veröffentlicht 28.10.2024 20:15:05
  • Zuletzt bearbeitet 17.04.2025 18:41:10

Cross Site Scripting vulnerability in eyouCMS v.1.6.7 allows a remote attacker to obtain sensitive information via a crafted script to the post parameter.

  • EPSS 0.72%
  • Veröffentlicht 07.04.2024 22:15:09
  • Zuletzt bearbeitet 05.06.2025 20:02:42

A vulnerability was found in EyouCMS 1.6.5. It has been declared as critical. This vulnerability affects unknown code of the file /login.php?m=admin&c=Field&a=channel_edit of the component Backend. The manipulation of the argument channel_id leads to...

Exploit
  • EPSS 0.98%
  • Veröffentlicht 14.03.2024 22:15:22
  • Zuletzt bearbeitet 16.04.2025 15:29:38

There is a PHP file inclusion vulnerability in the template configuration of eyoucms v1.6.4, allowing attackers to execute code or system commands through a carefully crafted malicious payload.

Exploit
  • EPSS 0.46%
  • Veröffentlicht 01.02.2024 23:15:11
  • Zuletzt bearbeitet 29.05.2025 15:15:30

Cross Site Scripting vulnerability in the path parameter in eyoucms v.1.6.5 allows a remote attacker to run arbitrary code via crafted URL.

Exploit
  • EPSS 0.43%
  • Veröffentlicht 01.02.2024 23:15:11
  • Zuletzt bearbeitet 04.06.2025 16:15:28

Cross Site Scripting (XSS) vulnerability in is_water parameter in eyoucms v.1.6.5 allows a remote attacker to run arbitrary code via crafted URL.

Exploit
  • EPSS 0.46%
  • Veröffentlicht 01.02.2024 23:15:11
  • Zuletzt bearbeitet 21.11.2024 08:56:51

Cross Site Scripting vulnerability in num parameter in eyoucms v.1.6.5 allows a remote attacker to run arbitrary code via crafted URL.