Skip to content
Noroxi

fangfa records

3 published records for vendor fangfa.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 19
  2. 21

Bar: total · dark part: CISA KEV.

All records

3 records
  • FDCMS (also known as Fangfa Content Management System) 4.0 allows remote attackers to get a webshell in the background via Front/lib/Action/

    CriticalCVSS 9.8No exploitEPSS 2%

    fangfa · fdcmsJun 2, 2021

  • FDCMS (aka Fangfa Content Management System) 4.0 contains a front-end SQL injection via Admin/Lib/Action/FloginAction.class.php.

    CriticalCVSS 9.8No exploitEPSS 1%

    fangfa · fdcmsJun 2, 2021

  • admin/Lib/Action/FpluginAction.class.php in FDCMS (aka Fangfa Content Manage System) 4.2 allows SQL Injection.

    HighCVSS 7.5No exploitEPSS 2%

    fangfa · fdcmsMay 16, 2019