Vulnerability index

Browse CVEs

13 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2025-25763 crmeb CRMEB-KY v5.4.0 and before has a SQL Injection vulnerability at getRead() in /system/SystemDatabackupServices.php Crmeb Mitigation only Fix from $2,3002025-03-06 HIGH 7.5 CVE-2024-52726 CRMEB v5.4.0 is vulnerable to Arbitrary file read in the save_basics function which allows an attacker to obtain sensitive information Crmeb Mitigation only Fix from $1,9502024-11-22 HIGH 7.5 CVE-2024-36837EPSS 8% SQL Injection vulnerability in CRMEB v.5.2.2 allows a remote attacker to obtain sensitive information via the getProductList function in the ProductC… Crmeb Mitigation only Fix from $1,9502024-06-05 MEDIUM 5.3 CVE-2024-33117 crmeb_java v1.3.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the mergeList method in class com.zbkj.front.pub.ImageMergeContr… Crmeb Java Mitigation only Fix from $1,6002024-05-06 HIGH 7.5 CVE-2024-25469 SQL Injection vulnerability in CRMEB crmeb_java v.1.3.4 and before allows a remote attacker to obtain sensitive information via the latitude and long… Crmeb Java No fix yet Fix from $1,9502024-02-23 HIGH 8.1 CVE-2024-1704 A vulnerability was found in ZhongBangKeJi CRMEB 5.2.2. It has been declared as critical. This vulnerability affects the function save/delete of the … Crmeb No fix yet Fix from $1,9502024-02-21 MEDIUM 5.3 CVE-2024-1703 A vulnerability was found in ZhongBangKeJi CRMEB 5.2.2. It has been classified as problematic. This affects the function openfile of the file /admina… Crmeb No fix yet Fix from $1,6002024-02-21 HIGH 7.2 CVE-2023-2419 A vulnerability was found in Zhong Bang CRMEB 4.6.0. It has been declared as critical. This vulnerability affects the function videoUpload of the fil… Crmeb No fix yet Fix from $1,9502023-04-29 HIGH 7.2 CVE-2023-1165 A vulnerability was found in Zhong Bang CRMEB Java 1.3.4. It has been classified as critical. This affects an unknown part of the file /api/admin/sys… Crmeb No fix yet Fix from $1,9502023-03-03 HIGH 7.5 CVE-2022-44343 CRMEB 4.4.4 is vulnerable to Any File download. Crmeb Mitigation only Fix from $1,9502023-02-06 HIGH 8.8 CVE-2020-21394 SQL Injection vulnerability in Zhong Bang Technology Co., Ltd CRMEB mall system V2.60 and V3.1 via the tablename parameter in SystemDatabackup.php. Crmeb No fix yet Fix from $1,9502021-06-29 CRITICAL 9.8 CVE-2020-21787 CRMEB 3.1.0+ is vulnerable to File Upload Getshell via /crmeb/crmeb/services/UploadService.php. Crmeb No fix yet Fix from $2,3002021-06-24 CRITICAL 9.8 CVE-2020-25466 A SSRF vulnerability exists in the downloadimage interface of CRMEB 3.0, which can remotely download arbitrary files on the server and remotely execu… Crmeb Mitigation only Fix from $2,3002020-10-23