Filtered by vendor Beian.miit Subscriptions
Filtered by product Cool-admin-java Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-57409 1 Beian.miit 1 Cool-admin-java 2025-10-23 4.8 Medium
A stored cross-site scripting (XSS) vulnerability in the Parameter List module of cool-admin-java v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the internet pictures field.
CVE-2024-57408 1 Beian.miit 1 Cool-admin-java 2025-10-22 7.2 High
An arbitrary file upload vulnerability in the component /comm/upload of cool-admin-java v1.0 allows attackers to execute arbitrary code via uploading a crafted file.