Vtimecn operates a website builder product, 188jianzhan, that presents a modestly represented attack surface centered on application-layer input handling. The durable signal reflects web-application vulnerabilities including cross-site scripting and SQL injection, which are characteristic of content-generation platforms where user input flows into page rendering and database queries. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Vtimecn over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-23685CRITICAL SQL Injection vulnerability in 188Jianzhan v2.1.0, allows attackers to execute arbitrary code and gain escalated privileges, via the username parameter to login.php. | Nov 2, 2021 | 9.8 | 29 | NO | NO |
CVE-2021-39427MEDIUM Cross site scripting vulnerability in 188Jianzhan 2.10 allows attackers to execute arbitrary code via the username parameter to /admin/reg.php. | Dec 15, 2022 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Vtimecn.
Media articles that mention a CVE ID that affects a product developed by Vtimecn — matched by CVE ID, not by vendor name.