📦 Yccms

by Yccms

🔍 What is Yccms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-20287

CRITICAL CVSS 9.8 Feb 1, 2021

This vulnerability allows attackers to upload arbitrary files to yccms 3.3 systems without proper validation, leading to remote code execution. Attackers can upload malicious files disguised as images...

CVE-2020-20290

HIGH CVSS 7.5 Feb 1, 2021

This directory traversal vulnerability in yccms 3.3 allows attackers to delete arbitrary files on the server by manipulating request parameters in delete functions. It affects all deployments of yccms...

CVE-2025-64048

MEDIUM CVSS 6.1 Nov 24, 2025

YCCMS 3.4 contains a stored XSS vulnerability in article management that allows attackers to inject malicious scripts into article titles. When other users view articles with these titles, the scripts...