Youke365
Youke365 Youke 365: vulnerabilidades y CVE
Youke365 Youke 365 tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-0304 | Crítica (9.8) | 0.50% | — | 8 ene 2024 | A vulnerability has been found in Youke365 up to 1.5.3 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /app/api/controller/collect.php. The manipulation of the argument… |
| CVE-2024-0303 | Crítica (9.8) | 0.50% | — | 8 ene 2024 | A vulnerability, which was classified as critical, was found in Youke365 up to 1.5.3. Affected is an unknown function of the file /app/api/controller/caiji.php of the component Parameter Handler. The manipulation of the… |
| CVE-2018-18215 | Alta (8.8) | 0.49% | — | 11 oct 2018 | In youke365 v1.1.5, admin/user.html has a CSRF vulnerability that can add an user account. |
| CVE-2018-18242 | Crítica (9.8) | 1.1% | — | 11 oct 2018 | youke365 v1.1.5 has SQL injection via admin/login.html, as demonstrated by username=admin&pass=123456&code=9823&act=login&submit=%E7%99%BB+%E9%99%86. |