Bbs Diyhi Bbs

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Diyhi Bbs.

By the Year

In 2026 there have been 0 vulnerabilities in Diyhi Bbs. Bbs did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 0 0.00
2023 0 0.00
2022 7 6.87

It may take a day or so for new Bbs vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Diyhi Bbs Security Vulnerabilities

A File Upload vulnerability exists in bbs v5.3
CVE-2021-43098 7.2 - High - March 28, 2022

A File Upload vulnerability exists in bbs v5.3 via QuestionManageAction.java in a getType function.

Unrestricted File Upload

A Server-side Template Injection (SSTI) vulnerability exists in bbs 5.3 in TemplateManageAction.java
CVE-2021-43097 7.2 - High - March 28, 2022

A Server-side Template Injection (SSTI) vulnerability exists in bbs 5.3 in TemplateManageAction.javawhich could let a malicoius user execute arbitrary code.

Code Injection

A File Upload vulnerability exists in bbs 5.3 is
CVE-2021-43103 7.2 - High - March 28, 2022

A File Upload vulnerability exists in bbs 5.3 is via ForumManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code.

Unrestricted File Upload

A File Upload vulnerability exists in bbs 5.3 is
CVE-2021-43102 7.2 - High - March 28, 2022

A File Upload vulnerability exists in bbs 5.3 is via HelpManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code.

Unrestricted File Upload

A File Upload vulnerability exists in bbs 5.3 is
CVE-2021-43101 7.2 - High - March 28, 2022

A File Upload vulnerability exists in bbs 5.3 is via MembershipCardManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code.

Unrestricted File Upload

A File Upload vulnerability exists in bbs 5.3 is
CVE-2021-43100 7.2 - High - March 28, 2022

A File Upload vulnerability exists in bbs 5.3 is via TopicManageAction.java in a GetType function, which lets a remote malicious user execute arbitrary code.

Unrestricted File Upload

An Archive Extraction (AKA "Zip Slip) vulnerability exists in bbs 5.3 in the UpgradeNow function in UpgradeManageAction.java
CVE-2021-43099 4.9 - Medium - March 28, 2022

An Archive Extraction (AKA "Zip Slip) vulnerability exists in bbs 5.3 in the UpgradeNow function in UpgradeManageAction.java, which unzips the arbitrary upladed zip file without checking filenames. The vulnerability is exploited using a specially crafted archive that holds directory traversal filenames (e.g. ../../evil.exe).

Directory traversal

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Diyhi Bbs or by Diyhi? Click the Watch button to subscribe.

Diyhi
Vendor

Diyhi Bbs
Product

subscribe