waimai_super_cms_project CVE Vulnerabilities & CVE List (4)

Products (CPE): — CVEs: 4

waimai_super_cms_project vulnerability overview

Aggregates CVE and security vulnerability intelligence across all waimai_super_cms_project-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk cross-site scripting; exposure may include vendor impact session compromise in vendor surface production workloads and vendor surface software deployment contexts.

Vulnerability distribution trend (last 24 months)

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2020-21506 waimai Super Cms 20150505 contains a cross-site scripting (XSS) vulnerability in the component /admin.php?m=Config&a=add. [email protected] 6.1 0.64% 2021-10-05 2026-06-16
CVE-2020-21505 waimai Super Cms 20150505 contains a cross-site scripting (XSS) vulnerability in the component /admin.php/Link/addsave. [email protected] 6.1 0.64% 2021-10-05 2026-06-16
CVE-2020-21504 waimai Super Cms 20150505 contains a cross-site scripting (XSS) vulnerability in the component /admin.php?&m=Public&a=login. [email protected] 6.1 0.64% 2021-10-05 2026-06-16
CVE-2020-21503 waimai Super Cms 20150505 has a logic flaw allowing attackers to modify a price, before form submission, by observing data in a packet capture. By setting the index.php?m=gift&a=addsave credit parameter to -1, the product is sold for free. [email protected] 7.5 1.02% 2021-10-05 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence