No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 14 Sep 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Yot CMS up to 3.3.1. Affected by this vulnerability is the function Login of the file global.php of the component Cookie Handler. This manipulation of the argument yot3_user/yot3_pass causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks. | |
| Title | Yot CMS Cookie global.php login sql injection | |
| First Time appeared |
Yot
Yot cms |
|
| Weaknesses | CWE-74 CWE-89 |
|
| CPEs | cpe:2.3:a:yot:cms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Yot
Yot cms |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-14T11:00:07.791Z
Reserved: 2026-09-13T08:22:02.047Z
Link: CVE-2026-90708
No data.
Status : Received
Published: 2026-09-14T11:17:07.313
Modified: 2026-09-14T11:17:07.313
Link: CVE-2026-90708
No data.
OpenCVE Enrichment
No data.