A vulnerability was found in Yifang CMS up to 2.0.2 and classified as problematic. Affected by this issue is some unknown functionality of the component Article Management Module. The manipulation of the argument Default Value leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
References
Link | Resource |
---|---|
https://gitee.com/wanglongcn/yifang/issues/IC41YQ | Exploit Issue Tracking |
https://vuldb.com/?ctiid.310676 | Permissions Required Third Party Advisory VDB Entry |
https://vuldb.com/?id.310676 | Third Party Advisory VDB Entry |
https://gitee.com/wanglongcn/yifang/issues/IC41YQ | Exploit Issue Tracking |
Configurations
History
09 Jun 2025, 19:00
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:wanglongcn:yifang:*:*:*:*:*:*:*:* | |
First Time |
Wanglongcn
Wanglongcn yifang |
|
Summary |
|
|
References | () https://gitee.com/wanglongcn/yifang/issues/IC41YQ - Exploit, Issue Tracking | |
References | () https://vuldb.com/?ctiid.310676 - Permissions Required, Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?id.310676 - Third Party Advisory, VDB Entry |
02 Jun 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://gitee.com/wanglongcn/yifang/issues/IC41YQ - |
31 May 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-31 15:15
Updated : 2025-06-09 19:00
NVD link : CVE-2025-5383
Mitre link : CVE-2025-5383
CVE.ORG link : CVE-2025-5383
JSON object : View
Products Affected
wanglongcn
- yifang