Vulnerabilities (CVE)

Filtered by vendor Bestfeng Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-60265 1 Bestfeng 1 Xckk 2025-10-16 N/A 6.5 MEDIUM
In xckk v9.6, there is a SQL injection vulnerability in which the orderBy parameter in user/list is not securely filtered, resulting in a SQL injection vulnerability.
CVE-2025-60266 1 Bestfeng 1 Xckk 2025-10-16 N/A 6.5 MEDIUM
In xckk v9.6, there is a SQL injection vulnerability in which the orderBy parameter in address/list is not securely filtered, resulting in a SQL injection vulnerability.
CVE-2025-60267 1 Bestfeng 1 Xckk 2025-10-16 N/A 6.5 MEDIUM
In xckk v9.6, there is a SQL injection vulnerability in which the cond parameter in notice/list is not securely filtered, resulting in a SQL injection vulnerability.