Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

unspecified — Vulnerabilities & Security Advisories 259

Browse all 259 CVE security advisories affecting unspecified. AI-powered Chinese analysis, POCs, and references for each vulnerability.

The term "unspecified" in cybersecurity contexts typically refers to software components, libraries, or hardware modules where the vendor or manufacturer has not been publicly identified or disclosed. This anonymity often complicates vulnerability tracking, resulting in a significant backlog of assigned CVEs, currently totaling 259. Historically, these unidentified assets frequently exhibit critical flaws such as remote code execution, cross-site scripting, and privilege escalation vulnerabilities, stemming from a lack of standardized security development lifecycles. The absence of clear attribution hinders coordinated patching efforts and incident response, leaving downstream users exposed to prolonged risk. Notable incidents involving unspecified components often involve supply chain attacks or zero-day exploits where the origin remains obscure until forensic analysis reveals the underlying architecture. This opacity creates a persistent threat landscape, as defenders cannot implement targeted mitigations without knowing the specific software stack or vendor context associated with the vulnerability.

CVE ID Title CVSS Severity Published
CVE-2017-20018 XAMPP Installer uncontrolled search path — XAMPP CWE-427 6.3 Medium 2022-06-09
CVE-2019-25066 ajenti API privileges management — ajenti CWE-269 6.3 Medium 2022-06-09
CVE-2019-25065 OpenNetAdmin os command injection — OpenNetAdmin CWE-78 6.3 Medium 2022-06-09
CVE-2016-15002 MONyog Ultimate Cookie privileges management — MONyog Ultimate CWE-269 7.3 High 2022-06-09
CVE-2017-20017 The Next Generation of Genealogy Sitebuilding timeline2.php sql injection — The Next Generation of Genealogy Sitebuilding CWE-89 6.3 Medium 2022-06-05
CVE-2020-36542 Demokratian install3.php privileges management — Demokratian CWE-269 7.3 High 2022-06-03
CVE-2020-36541 Demokratian genera_select.php sql injection — Demokratian CWE-89 7.3 High 2022-06-03
CVE-2020-36540 Neetai Tech product.php sql injection — Neetai Tech CWE-89 6.3 Medium 2022-06-03
CVE-2020-36539 Lógico y Creativo sql injection — Lógico y Creativo CWE-89 6.3 Medium 2022-06-03
CVE-2020-36536 Brandbugle main.php sql injection — Brandbugle CWE-89 6.3 Medium 2022-06-03
CVE-2020-36535 MINMAX newsDia.php sql injection — MINMAX CWE-89 6.3 Medium 2022-06-03
CVE-2020-36528 Platinum Mobile MobileHandler.ashx access control — Platinum Mobile CWE-264 5.5 Medium 2022-06-03
CVE-2020-36527 Server Status HTTP Status/SMTP Status cross site scripting — Server Status CWE-79 3.5 Low 2022-06-03
CVE-2020-36526 Countdown Timer Macro cross site scripting — Countdown Timer CWE-79 3.5 Low 2022-06-03
CVE-2020-36525 Linking New Windows Macro cross site scripting — Linking CWE-79 3.5 Low 2022-06-03
CVE-2020-36524 Refined Toolkit UI-Image/UI-Button cross site scripting — Refined Toolkit CWE-79 3.5 Low 2022-06-03
CVE-2020-36523 PlantUML Database Information Macro cross site scripting — PlantUML CWE-79 3.5 Low 2022-06-03
CVE-2022-1991 Fast Food Ordering System Master List Master.php cross site scripting — Fast Food Ordering System CWE-79 3.5 Low 2022-06-03
CVE-2021-4232 Zoo Management System manage-ticket.php cross site scripting — Zoo Management System CWE-79 3.5 Low 2022-05-26
CVE-2021-4231 Angular Comment cross site scripting — Angular CWE-79 3.5 Low 2022-05-26
CVE-2021-4230 Airfield Online MySQL Backup improper authentication — Airfield Online CWE-287 3.7 Low 2022-05-24
CVE-2021-4229 ua-parser-js Crypto Mining backdoor — ua-parser-js CWE-912 5.0 Medium 2022-05-24
CVE-2022-1840 Home Clean Services Management System cross site scripting — Home Clean Services Management System CWE-79 2.4 Low 2022-05-24
CVE-2022-1839 Home Clean Services Management System login.php sql injection — Home Clean Services Management System CWE-89 6.3 Medium 2022-05-24
CVE-2022-1838 Home Clean Services Management System login.php sql injection — Home Clean Services Management System CWE-89 4.7 Medium 2022-05-24
CVE-2022-1837 Home Clean Services Management System unrestricted upload — Home Clean Services Management System CWE-434 4.7 Medium 2022-05-24
CVE-2022-1819 Student Information System Student Roll Module cross site scripting — Student Information System CWE-79 2.4 Low 2022-05-24
CVE-2022-1817 Badminton Center Management System Userlist Module cross site scripting — Badminton Center Management System CWE-79 3.5 Low 2022-05-23
CVE-2022-1816 Zoo Management System Content Module cross site scripting — Zoo Management System CWE-79 3.5 Low 2022-05-23
CVE-2022-1753 WoWonder Group requests.php access control — WoWonder CWE-284 5.4 Medium 2022-05-17

This page lists every published CVE security advisory associated with unspecified. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.