Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-21177
HistorySep 27, 2019 - 12:00 a.m.

YzmCMS HTTP host header injection vulnerability

2019-09-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.007 Low

EPSS

Percentile

81.0%

YzmCMS is a lightweight open source content management system based on PHP Mysql architecture developed solely by Yuan Zhimeng.YzmCMS 5.3 is vulnerable to HTTP host header injection. Attackers can use the vulnerability to Web cache poisoning or trigger a redirect.

CPENameOperatorVersion
yzmcms yzmcmseq5.3

0.007 Low

EPSS

Percentile

81.0%

Related for CNVD-2022-21177