CVE WATCH / VULNERABILITY DETAIL

CVE-2026-105156

LOWCVSS 3.7NVD feed

Published 4 October 2026 · tracked since 4 October 2026

Description

A weakness has been identified in YzmCMS up to 7.6. Impacted is the function Password of the file /common/function/system.func.php of the component MD5 Handler. Executing a manipulation of the argument pass can lead to password hash with insufficient computational effort. The attack may be launched

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-105156 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-105156

LOWCVSS 3.7NVD feed

Published 4 October 2026 · tracked since 4 October 2026

Description

A weakness has been identified in YzmCMS up to 7.6. Impacted is the function Password of the file /common/function/system.func.php of the component MD5 Handler. Executing a manipulation of the argument pass can lead to password hash with insufficient computational effort. The attack may be launched

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]