utcms project records
3 published records for vendor utcms project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-697 Incorrect Comparison1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
- CWE-918 Server-Side Request Forgery (SSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2025-56407No exploit | A vulnerability has been found in HuangDou UTCMS V9 and classified as critical.utcms project · utcms · CWE-89 | High8.8 | — | 0.3% | Sep 10, 2025 |
11Monitor | CVE-2025-9401No exploit | HuangDou UTCMS Login login.php comparisonutcms project · utcms · CWE-697 | Low2.9 | — | 0.4% | Aug 24, 2025 |
8Monitor | CVE-2025-9402No exploit | HuangDou UTCMS Config update.php server-side request forgeryutcms project · utcms · CWE-918 | Low2.0 | — | 0.4% | Aug 24, 2025 |
- CVE-2025-5640735Monitor
A vulnerability has been found in HuangDou UTCMS V9 and classified as critical.
HighCVSS 8.8No exploitEPSS 0%utcms project · utcmsSep 10, 2025
- CVE-2025-940111Monitor
HuangDou UTCMS Login login.php comparison
LowCVSS 2.9No exploitEPSS 0%utcms project · utcmsAug 24, 2025
- CVE-2025-94028Monitor
HuangDou UTCMS Config update.php server-side request forgery
LowCVSS 2.0No exploitEPSS 0%utcms project · utcmsAug 24, 2025