Lucene search

K

Yccms Security Vulnerabilities

cve
cve

CVE-2020-20287

Unrestricted file upload vulnerability in the yccms 3.3 project. The xhUp function's improper judgment of the request parameters, triggers remote code...

9.8CVSS

9.8AI Score

0.082EPSS

2021-02-01 06:15 PM
19
cve
cve

CVE-2020-20289

Sql injection vulnerability in the yccms 3.3 project. The no_top function's improper judgment of the request parameters, triggers a sql injection...

9.8CVSS

9.5AI Score

0.002EPSS

2021-02-01 06:15 PM
21
3
cve
cve

CVE-2020-20290

Directory traversal vulnerability in the yccms 3.3 project. The delete, deletesite, and deleteAll functions' improper judgment of the request parameters, triggers a directory traversal...

7.5CVSS

7.5AI Score

0.001EPSS

2021-02-01 06:15 PM
22
2