KakeruJ/CVE

KakeruJ/CVE

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
8.8 HIGH

An issue was discovered in JFinalCMS v.5.0.0. There is a SQL injection vulnerablity via /admin/div_data/data

9.8 CRITICAL

An arbitrary file upload vulnerability in the component \controller\ImageUploadController.class of inxedu v2.0.6 allows attackers to execute arbitrary code via uploading a crafted jsp file.