ZH Yandexmap ProjectCVEs & Vulnerabilities
2 CVEs affecting ZH Yandexmap Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
zh yandexmap 2
CVE-2018-6604CRITICALpoc
SQL Injection exists in the Zh YandexMap 6.2.1.0 component for Joomla! via the id parameter in a task=getPlacemarkDetails request.
5 Feb 2018
9.8
CVSS
CVE-2017-15966CRITICALpoc
The Zh YandexMap (aka com_zhyandexmap) component 6.1.1.0 for Joomla! allows SQL Injection via the placemarklistid parameter to index.php.
29 Oct 2017
9.8
CVSS
← PrevPage 1 / 1Next →