Vendors · baicloud-cms project
Products (1)
Recent Vulnerabilities
View all 2 →CVE-2021-44302HIGH 8.8
BaiCloud-cms v2.5.7 was discovered to contain multiple SQL injection vulnerabilities via the tongji and baidu_map parameters in /user/ztconfig.php.
CVE-2021-41729CRITICAL 9.1
BaiCloud-cms v2.5.7 is affected by an arbitrary file deletion vulnerability, which allows an attacker to delete arbitrary files on the server through /user/ppsave.php.
