Vulnerabilities (CVE)

Filtered by vendor Beian.miit Subscribe
Filtered by product Cool-admin-java
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-57409 1 Beian.miit 1 Cool-admin-java 2025-10-23 N/A 4.8 MEDIUM
A stored cross-site scripting (XSS) vulnerability in the Parameter List module of cool-admin-java v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the internet pictures field.
CVE-2024-57408 1 Beian.miit 1 Cool-admin-java 2025-10-22 N/A 7.2 HIGH
An arbitrary file upload vulnerability in the component /comm/upload of cool-admin-java v1.0 allows attackers to execute arbitrary code via uploading a crafted file.