Product:

Yshopmall

(Guchengwuyue)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 2
Date Id Summary Products Score Patch Annotated
2024-11-15 CVE-2024-50648 yshopmall V1.0 has an arbitrary file upload vulnerability, which can enable RCE or even take over the server when improperly configured to parse JSP files. Yshopmall N/A
2025-03-04 CVE-2025-25426 yshopmall <=v1.9.0 is vulnerable to SQL Injection in the image listing interface. Yshopmall N/A