Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2019-7568

Disclosure Date: February 07, 2019 (last updated November 27, 2024)
An issue was discovered in baijiacms V4 that can result in time-based blind SQL injection to get data via the cate parameter in an index.php?act=index request.
0
Attacker Value
Unknown

CVE-2018-16724

Disclosure Date: September 08, 2018 (last updated November 27, 2024)
An issue is discovered in baijiacms V4. Blind SQL Injection exists via the order parameter in an index.php?act=index request.
0
Attacker Value
Unknown

CVE-2018-16725

Disclosure Date: September 08, 2018 (last updated November 27, 2024)
An issue is discovered in baijiacms V4. XSS exists via the assets/weengine/components/zclip/ZeroClipboard.swf id parameter, aka "Non-standard use of the flash component."
0