CVE-2023-2057
- EPSS 0.62%
- Veröffentlicht 14.04.2023 14:15:11
- Zuletzt bearbeitet 21.11.2024 07:57:51
A vulnerability was found in EyouCms 1.5.4. It has been classified as problematic. Affected is an unknown function of the file login.php?m=admin&c=Arctype&a=edit of the component New Picture Handler. The manipulation of the argument litpic_loca leads...
CVE-2023-1799
- EPSS 0.59%
- Veröffentlicht 02.04.2023 10:15:07
- Zuletzt bearbeitet 21.11.2024 07:39:55
A vulnerability, which was classified as problematic, was found in EyouCMS up to 1.5.4. This affects an unknown part of the file login.php. The manipulation of the argument tag_tag leads to cross site scripting. It is possible to initiate the attack ...
CVE-2023-1798
- EPSS 0.6%
- Veröffentlicht 02.04.2023 10:15:07
- Zuletzt bearbeitet 21.11.2024 07:39:55
A vulnerability, which was classified as problematic, has been found in EyouCMS up to 1.5.4. Affected by this issue is some unknown functionality of the file login.php. The manipulation of the argument typename leads to cross site scripting. The atta...
CVE-2022-45755
- EPSS 0.45%
- Veröffentlicht 08.02.2023 19:15:11
- Zuletzt bearbeitet 25.03.2025 15:15:16
Cross-site scripting (XSS) vulnerability in EyouCMS v1.6.0 allows attackers to execute arbitrary code via the home page description on the basic information page.
CVE-2022-45539
- EPSS 0.42%
- Veröffentlicht 20.01.2023 19:15:16
- Zuletzt bearbeitet 03.04.2025 16:15:24
EyouCMS <= 1.6.0 was discovered a reflected-XSS in FileManager component in GET value "activepath" when creating a new file.
CVE-2022-45537
- EPSS 0.42%
- Veröffentlicht 20.01.2023 19:15:16
- Zuletzt bearbeitet 03.04.2025 16:15:23
EyouCMS <= 1.6.0 was discovered a reflected-XSS in the article publish component in cookie "ENV_LIST_URL".
CVE-2022-45538
- EPSS 0.42%
- Veröffentlicht 20.01.2023 19:15:16
- Zuletzt bearbeitet 03.04.2025 16:15:24
EyouCMS <= 1.6.0 was discovered a reflected-XSS in the article publish component in cookie "ENV_GOBACK_URL".
CVE-2022-45540
- EPSS 0.42%
- Veröffentlicht 20.01.2023 19:15:16
- Zuletzt bearbeitet 03.04.2025 16:15:24
EyouCMS <= 1.6.0 was discovered a reflected-XSS in article type editor component in POST value "name" if the value contains a malformed UTF-8 char.
CVE-2022-45541
- EPSS 0.42%
- Veröffentlicht 20.01.2023 19:15:16
- Zuletzt bearbeitet 03.04.2025 16:15:24
EyouCMS <= 1.6.0 was discovered a reflected-XSS in the article attribute editor component in POST value "value" if the value contains a non-integer char.
CVE-2022-45542
- EPSS 0.38%
- Veröffentlicht 20.01.2023 19:15:16
- Zuletzt bearbeitet 03.04.2025 16:15:24
EyouCMS <= 1.6.0 was discovered a reflected-XSS in the FileManager component in GET parameter "filename" when editing any file.