Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-58251
HistoryFeb 03, 2021 - 12:00 a.m.

YCCMS file upload vulnerability

2021-02-0300:00:00
China National Vulnerability Database
www.cnvd.org.cn
12

0.082 Low

EPSS

Percentile

94.4%

Yccms is a Php-based lightweight CMS builder from the Yccms team. yccms 3.3 has a file upload vulnerability, which stems from an error in the xhUp function’s determination of request parameters and can be exploited by attackers to cause remote code execution.

CPENameOperatorVersion
yccms yccms veq3.3

0.082 Low

EPSS

Percentile

94.4%