CVE-2023-37133
- EPSS 0.1%
- Veröffentlicht 06.07.2023 15:15:16
- Zuletzt bearbeitet 21.11.2024 08:11:04
A stored cross-site scripting (XSS) vulnerability in the Column management module of eyoucms v1.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2023-37132
- EPSS 0.1%
- Veröffentlicht 06.07.2023 15:15:16
- Zuletzt bearbeitet 21.11.2024 08:11:03
A stored cross-site scripting (XSS) vulnerability in the custom variables module of eyoucms v1.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2023-36093
- EPSS 0.11%
- Veröffentlicht 22.06.2023 15:15:13
- Zuletzt bearbeitet 21.11.2024 08:09:17
There is a storage type cross site scripting (XSS) vulnerability in the filing number of the Basic Information tab on the backend management page of EyouCMS v1.6.3
CVE-2023-34657
- EPSS 0.08%
- Veröffentlicht 19.06.2023 04:15:10
- Zuletzt bearbeitet 12.12.2024 01:23:48
A stored cross-site scripting (XSS) vulnerability in Eyoucms v1.6.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the web_recordnum parameter.
CVE-2023-33492
- EPSS 0.1%
- Veröffentlicht 12.06.2023 13:15:10
- Zuletzt bearbeitet 21.11.2024 08:05:38
EyouCMS 1.6.2 is vulnerable to Cross Site Scripting (XSS).
CVE-2023-31708
- EPSS 0.1%
- Veröffentlicht 23.05.2023 01:15:09
- Zuletzt bearbeitet 21.01.2025 19:15:09
A Cross-Site Request Forgery (CSRF) in EyouCMS v1.6.2 allows attackers to execute arbitrary commands via a supplying a crafted HTML file to the Upload software format function.
CVE-2023-30125
- EPSS 0.14%
- Veröffentlicht 28.04.2023 14:15:11
- Zuletzt bearbeitet 31.01.2025 16:15:28
EyouCms V1.6.1-UTF8-sp1 is vulnerable to Cross Site Scripting (XSS).
CVE-2023-2058
- EPSS 0.09%
- Veröffentlicht 14.04.2023 14:15:11
- Zuletzt bearbeitet 21.11.2024 07:57:51
A vulnerability was found in EyouCms up to 1.6.2. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /yxcms/index.php?r=admin/extendfield/mesedit&tabid=12&id=4 of the component HTTP POST Reques...
CVE-2023-2057
- EPSS 0.08%
- Veröffentlicht 14.04.2023 14:15:11
- Zuletzt bearbeitet 21.11.2024 07:57:51
A vulnerability was found in EyouCms 1.5.4. It has been classified as problematic. Affected is an unknown function of the file login.php?m=admin&c=Arctype&a=edit of the component New Picture Handler. The manipulation of the argument litpic_loca leads...
CVE-2023-1799
- EPSS 0.25%
- Veröffentlicht 02.04.2023 10:15:07
- Zuletzt bearbeitet 21.11.2024 07:39:55
A vulnerability, which was classified as problematic, was found in EyouCMS up to 1.5.4. This affects an unknown part of the file login.php. The manipulation of the argument tag_tag leads to cross site scripting. It is possible to initiate the attack ...