Vulnerabilities (CVE)

Filtered by vendor Yeswiki Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-43091 1 Yeswiki 1 Yeswiki 2023-12-10 5.0 MEDIUM 7.5 HIGH
An SQL Injection vlnerability exits in Yeswiki doryphore 20211012 via the email parameter in the registration form.
CVE-2018-1000641 1 Yeswiki 1 Yeswiki 2023-12-10 7.5 HIGH 9.8 CRITICAL
YesWiki version <= cercopitheque beta 1 contains a PHP Object Injection vulnerability in Unserialising user entered parameter in i18n.inc.php that can result in execution of code, disclosure of information.
CVE-2018-13045 1 Yeswiki 1 Cercopitheque 2023-12-10 7.5 HIGH 9.8 CRITICAL
SQL injection vulnerability in the "Bazar" page in Yeswiki Cercopitheque 2018-06-19-1 and earlier allows attackers to execute arbitrary SQL commands via the "id" parameter.