Metrics
Affected Vendors & Products
Tue, 10 Jun 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dedecms
Dedecms dedecms |
|
| CPEs | cpe:2.3:a:dedecms:dedecms:5.7.117:*:*:*:*:*:*:* | |
| Vendors & Products |
Dedecms
Dedecms dedecms |
Tue, 03 Jun 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 28 May 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 25 May 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in DedeCMS 5.7.117. It has been classified as critical. Affected is an unknown function of the file dede/sys_verifies.php?action=getfiles of the component Incomplete Fix CVE-2018-9175. The manipulation of the argument refiles leads to code injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | DedeCMS Incomplete Fix CVE-2018-9175 sys_verifies.php code injection | |
| Weaknesses | CWE-74 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-25T00:00:10.371Z
Updated: 2025-06-03T09:50:24.612Z
Reserved: 2025-05-23T18:48:59.267Z
Link: CVE-2025-5137
Updated: 2025-05-27T14:22:20.280Z
Status : Analyzed
Published: 2025-05-25T00:15:23.257
Modified: 2025-06-10T19:33:16.710
Link: CVE-2025-5137
No data.