Vulnerabilities
Vulnerable Software
Wdja:  Security Vulnerabilities
wdja v2.1 is affected by a SQL injection vulnerability in the foreground search function.
CVSS Score
9.8
EPSS Score
0.002
Published
2022-05-04
Cross Site Scripting (XSS) vulnerability in shadoweb wdja v1.5.1, allows attackers to execute arbitrary code and gain escalated privileges, via the backurl parameter to /php/passport/index.php.
CVSS Score
9.6
EPSS Score
0.36
Published
2021-11-03
A Cross-Site Request Forgery (CSRF) in WDJA CMS v1.5.2 allows attackers to arbitrarily add administrator accounts via a crafted URL.
CVSS Score
6.5
EPSS Score
0.001
Published
2021-10-06
WDJA CMS v1.5.2 contains an arbitrary file deletion vulnerability in the component admin/cache/manage.php.
CVSS Score
9.1
EPSS Score
0.004
Published
2021-10-06
Cross-site request forgery (CSRF) in admin/global/manage.php in WDJA CMS 1.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via the tongji parameter.
CVSS Score
6.1
EPSS Score
0.001
Published
2021-01-11


Contact Us

Shodan ® - All rights reserved