CVE-2018-18261: Bijiadao Waimai Super CMS

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

In waimai Super Cms 20150505, there is an XSS vulnerability via the /admin.php/Foodcat/addsave fcname parameter.

Affected products

  • Bijiadao Waimai Super CMS: version 20150505 only

Published 2019-04-15. Last modified 2026-06-17.