Vulnerability index

Browse CVEs

113 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2024-28679 DedeCMS v5.7 was discovered to contain a cross-site scripting (XSS) vulnerability via Photo Collection. Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 6.1 CVE-2024-28680 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/diy_add.php. Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 6.1 CVE-2024-28681 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/plus_edit.php. Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 6.1 CVE-2024-28683 DedeCMS v5.7 was discovered to contain a cross-site scripting (XSS) vulnerability via create file. Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 5.4 CVE-2024-28669 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/freelist_edit.php. Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 5.4 CVE-2024-28672 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/media_edit.php. Dedecms No fix yet Fix from $1,6002024-03-13 HIGH 8.8 CVE-2024-28675 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/diy_edit.php Dedecms No fix yet Fix from $1,9502024-03-13 HIGH 8.8 CVE-2024-28684 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/module_main.php Dedecms No fix yet Fix from $1,9502024-03-13 HIGH 8.8 CVE-2024-28665 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/article_add.php Dedecms No fix yet Fix from $1,9502024-03-13 MEDIUM 6.1 CVE-2024-28667 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/templets_one_edit.php Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 6.1 CVE-2024-28668 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/mychannel_add.php Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 5.5 CVE-2024-28666 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/media_add.php Dedecms No fix yet Fix from $1,6002024-03-13 HIGH 8.8 CVE-2024-28431 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/catalog_del.php. Dedecms No fix yet Fix from $1,9502024-03-13 HIGH 8.8 CVE-2024-28432 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/article_edit.php. Dedecms No fix yet Fix from $1,9502024-03-13 MEDIUM 6.1 CVE-2024-28430 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/catalog_edit.php. Dedecms No fix yet Fix from $1,6002024-03-13 MEDIUM 5.5 CVE-2024-28429 DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/archives_do.php Dedecms No fix yet Fix from $1,6002024-03-13 HIGH 8.8 CVE-2023-52047 Dedecms v5.7.112 was discovered to contain a Cross-Site Request Forgery (CSRF) in the file manager. Dedecms Mitigation only Fix from $1,9502024-02-28 HIGH 8.8 CVE-2024-22895 DedeCMS 5.7.112 has a File Upload vulnerability via uploads/dede/module_upload.php. Dedecms No fix yet Fix from $1,9502024-01-22 MEDIUM 6.1 CVE-2023-49494 DedeCMS v5.7.111 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component select_media_post_wangEditor.php. Dedecms No fix yet Fix from $1,6002023-12-11 MEDIUM 6.1 CVE-2023-49492 DedeCMS v5.7.111 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the imgstick parameter at selectimages.php. Dedecms No fix yet Fix from $1,6002023-12-07 MEDIUM 6.1 CVE-2023-49493 DedeCMS v5.7.111 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the v parameter at selectimages.php. Dedecms No fix yet Fix from $1,6002023-12-07 HIGH 8.8 CVE-2023-43275 Cross-Site Request Forgery (CSRF) vulnerability in DedeCMS v5.7 in 110 backend management interface via /catalog_add.php, allows attackers to create … Dedecms No fix yet Fix from $1,9502023-11-16 MEDIUM 5.4 CVE-2023-48068 DedeCMS v6.2 was discovered to contain a Cross-site Scripting (XSS) vulnerability via spec_add.php. Dedecms No fix yet Fix from $1,6002023-11-13 HIGH 8.8 CVE-2023-5301EPSS 6% A vulnerability classified as critical was found in DedeCMS 5.7.111. This vulnerability affects the function AddMyAddon of the file album_add.php. Th… Dedecms No fix yet Fix from $1,9502023-09-30 CRITICAL 9.8 CVE-2023-40784 DedeCMS 5.7.102 has a File Upload vulnerability via uploads/dede/module_make.php. Dedecms Mitigation only Fix from $2,3002023-09-12 CRITICAL 9.8 CVE-2023-4747 A vulnerability classified as critical was found in DedeCMS 5.7.110. This vulnerability affects unknown code of the file /uploads/tags.php. The manip… Dedecms Mitigation only Fix from $2,3002023-09-04 HIGH 8.8 CVE-2023-36298 DedeCMS v5.7.109 has a File Upload vulnerability, leading to remote code execution (RCE). Dedecms No fix yet Fix from $1,9502023-08-03 CRITICAL 9.8 CVE-2023-37839 An arbitrary file upload vulnerability in /dede/file_manage_control.php of DedeCMS v5.7.109 allows attackers to execute arbitrary code via uploading … Dedecms No fix yet Fix from $2,3002023-07-13 CRITICAL 9.8 CVE-2023-3578 A vulnerability classified as critical was found in DedeCMS 5.7.109. Affected by this vulnerability is an unknown functionality of the file co_do.php… Dedecms No fix yet Fix from $2,3002023-07-10 MEDIUM 5.4 CVE-2023-31757 DedeCMS up to v5.7.108 is vulnerable to XSS in sys_info.php via parameters 'edit___cfg_powerby' and 'edit___cfg_beian' Dedecms No fix yet Fix from $1,6002023-05-19