FangfaCVEs & Vulnerabilities
3 CVEs affecting Fangfa products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
fdcms 3
CVE-2020-35442CRITICAL
FDCMS (also known as Fangfa Content Management System) 4.0 allows remote attackers to get a webshell in the background via Front/lib/Action/FindexAction.class.php.
3 Jun 2021
9.8
CVSS
CVE-2020-35441CRITICAL
FDCMS (aka Fangfa Content Management System) 4.0 contains a front-end SQL injection via Admin/Lib/Action/FloginAction.class.php.
3 Jun 2021
9.8
CVSS
CVE-2018-17048HIGH
admin/Lib/Action/FpluginAction.class.php in FDCMS (aka Fangfa Content Manage System) 4.2 allows SQL Injection.
16 May 2019
7.5
CVSS
← PrevPage 1 / 1Next →