Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

unspecified — Vulnerabilities & Security Advisories 259

Browse all 259 CVE security advisories affecting unspecified. AI-powered Chinese analysis, POCs, and references for each vulnerability.

The term "unspecified" in cybersecurity contexts typically refers to software components, libraries, or hardware modules where the vendor or manufacturer has not been publicly identified or disclosed. This anonymity often complicates vulnerability tracking, resulting in a significant backlog of assigned CVEs, currently totaling 259. Historically, these unidentified assets frequently exhibit critical flaws such as remote code execution, cross-site scripting, and privilege escalation vulnerabilities, stemming from a lack of standardized security development lifecycles. The absence of clear attribution hinders coordinated patching efforts and incident response, leaving downstream users exposed to prolonged risk. Notable incidents involving unspecified components often involve supply chain attacks or zero-day exploits where the origin remains obscure until forensic analysis reveals the underlying architecture. This opacity creates a persistent threat landscape, as defenders cannot implement targeted mitigations without knowing the specific software stack or vendor context associated with the vulnerability.

CVE ID Title CVSS Severity Published
CVE-2022-2664 Private Cloud Management Platform POST Request global_config_query improper authentication — Private Cloud Management Platform CWE-287 7.3 High 2022-08-05
CVE-2022-2647 jeecg-boot unrestricted upload — jeecg-boot CWE-434 7.3 High 2022-08-04
CVE-2016-15004 InfiniteWP Client Plugin injection — InfiniteWP Client Plugin CWE-74 7.3 High 2022-07-23
CVE-2017-20129 LogoStore search.php sql injection — LogoStore CWE-89 6.3 Medium 2022-07-14
CVE-2017-20128 KB Messages PHP Script sql injection — KB Messages PHP Script CWE-89 7.3 High 2022-07-13
CVE-2017-20127 KB Login Authentication Script sql injection — KB Login Authentication Script CWE-89 7.3 High 2022-07-13
CVE-2017-20126 KB Affiliate Referral Script index.php sql injection — KB Affiliate Referral Script CWE-89 7.3 High 2022-07-13
CVE-2022-2263 Online Hotel Booking System Room edit_room_cat.php sql injection — Online Hotel Booking System CWE-89 4.7 Medium 2022-07-12
CVE-2022-2262 Online Hotel Booking System Room edit_all_room.php sql injection — Online Hotel Booking System CWE-89 4.7 Medium 2022-07-12
CVE-2017-20125 Online Hotel Booking System Pro roomtype-details.php sql injection — Online Hotel Booking System Pro CWE-89 6.3 Medium 2022-06-30
CVE-2017-20124 Online Hotel Booking System Pro Plugin roomtype-details.php sql injection — Online Hotel Booking System Pro Plugin CWE-89 6.3 Medium 2022-06-30
CVE-2017-20123 Viscosity DLL untrusted search path — Viscosity CWE-426 8.8 High 2022-06-30
CVE-2017-20108 Easy Table Plugin options-general.php cross site scripting — Easy Table Plugin CWE-80 3.5 Low 2022-06-29
CVE-2017-20105 Simplessus path traversal — Simplessus CWE-22 5.4 Medium 2022-06-28
CVE-2017-20104 Simplessus Cookie Time sql injection — Simplessus CWE-89 7.3 High 2022-06-28
CVE-2017-20103 Kama Click Counter Plugin admin.php Blind sql injection — Kama Click Counter Plugin CWE-89 6.3 Medium 2022-06-27
CVE-2017-20098 Admin Custom Login Plugin Persistent cross site scripting — Admin Custom Login Plugin CWE-80 3.5 Low 2022-06-27
CVE-2017-20099 Analytics Stats Counter Statistics Plugin code injection — Analytics Stats Counter Statistics Plugin CWE-94 7.3 High 2022-06-27
CVE-2017-20102 Album Lock getImage path traversal — Album Lock CWE-22 4.4 Medium 2022-06-27
CVE-2017-20101 ProjectSend information disclosure — ProjectSend CWE-200 3.5 Low 2022-06-27
CVE-2017-20100 Air Transfer cross site scripting — Air Transfer CWE-80 3.5 Low 2022-06-27
CVE-2017-20097 WP-Filebase Download Manager Plugin cross site scriting — WP-Filebase Download Manager Plugin CWE-80 3.5 Low 2022-06-24
CVE-2017-20096 WP-SpamFree Anti-Spam Plugin cross site scriting — WP-SpamFree Anti-Spam Plugin CWE-80 3.5 Low 2022-06-24
CVE-2017-20095 Simple Ads Manager Plugin code injection — Simple Ads Manager Plugin CWE-94 6.3 Medium 2022-06-24
CVE-2017-20094 NewStatPress Plugin Persistent cross site scriting — NewStatPress Plugin CWE-80 3.5 Low 2022-06-24
CVE-2017-20093 Download Manager Plugin cross-site request forgery — Download Manager Plugin CWE-352 4.3 Medium 2022-06-24
CVE-2017-20092 Google Analytics Dashboard Plugin cross site scriting — Google Analytics Dashboard Plugin CWE-80 3.5 Low 2022-06-24
CVE-2017-20091 File Manager Plugin cross-site request forgery — File Manager Plugin CWE-352 4.3 Medium 2022-06-23
CVE-2017-20090 Global Content Blocks Plugin cross-site request forgery — Global Content Blocks Plugin CWE-352 4.3 Medium 2022-06-23
CVE-2017-20089 Gwolle Guestbook Plugin cross site scriting — Gwolle Guestbook Plugin CWE-80 3.5 Low 2022-06-23

This page lists every published CVE security advisory associated with unspecified. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.