All 4 CVE vulnerabilities found in CYAN Backup, with AI-generated Chinese analysis, references, and POCs.
Vendor: Greg Ross
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-12092 | CYAN Backup <= 2.5.4 - Authenticated (Admin+) Arbitrary File Deletion CWE-22 | 6.5 | Medium | 2025-11-08 |
| CVE-2024-9662 | CYAN Backup < 2.5.3 - Admin+ Stored XSS via General Settings | 4.8AI | MediumAI | 2025-05-15 |
| CVE-2024-9663 | CYAN Backup < 2.5.3 - Admin+ Stored XSS via Remote Storage Settings | 4.8AI | MediumAI | 2025-05-15 |
| CVE-2024-52390 | WordPress CYAN Backup plugin <= 2.5.3 - Arbitrary File Download vulnerability CWE-35 | 4.9 | Medium | 2024-11-18 |
All 4 known CVE vulnerabilities affecting CYAN Backup with full Chinese analysis, references, and POCs where available.