Vulnerabilities
Vulnerable Software
Eyoucms:  >> Eyoucms  Security Vulnerabilities
Cross Site Scripting (XSS) vulnerability exists in EyouCMS1.3.6 in the basic_information area.
CVSS Score
5.4
EPSS Score
0.003
Published
2021-08-19
Cross Site Request Forgery (CSRF) vulnerability exists in Eyoucms 1.3.6 that can add an admin account via /login.php?m=admin&c=Admin&a=admin_add&lang=cn.
CVSS Score
8.8
EPSS Score
0.001
Published
2021-08-18
Cross Site Scripting (XSS) vulnerability exists in Eyoucms v1.4.7 and earlier via the addonfieldext parameter.
CVSS Score
6.1
EPSS Score
0.016
Published
2021-08-18
A stored cross site scripting (XSS) vulnerability in the web_copyright field of Eyoucms v1.4.1 allows authenticated attackers to execute arbitrary web scripts or HTML.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-08-10
A stored cross site scripting (XSS) vulnerability in the web_attr_2 field of Eyoucms v1.4.1 allows authenticated attackers to execute arbitrary web scripts or HTML.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-08-10
A CSRF vulnerability in Eyoucms v1.2.7 allows an attacker to add an admin account via login.php.
CVSS Score
8.8
EPSS Score
0.001
Published
2020-10-22
EyouCms through 2019-07-11 has XSS related to the login.php web_recordnum parameter.
CVSS Score
6.1
EPSS Score
0.002
Published
2019-10-10


Contact Us

Shodan ® - All rights reserved