Vulnerabilities
Vulnerable Software
Jeecms:  >> Jeecms  Security Vulnerabilities
JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the commentText parameter.
CVSS Score
5.4
EPSS Score
0.003
Published
2021-09-30
JEECMS 9 has SSRF via the ueditor/getRemoteImage.jspx upfile parameter.
CVSS Score
6.5
EPSS Score
0.002
Published
2018-12-28
JEECMS 9.3 has CSRF via the api/admin/content/save URI to add news.
CVSS Score
6.5
EPSS Score
0.001
Published
2018-11-26
JEECMS 9.3 has CSRF via the api/admin/role/save URI to add a user.
CVSS Score
8.8
EPSS Score
0.001
Published
2018-11-26
JEECMS 9.3 has XSS via an index.do#/content/update?type=update URI.
CVSS Score
4.8
EPSS Score
0.001
Published
2018-11-05


Contact Us

Shodan ® - All rights reserved