VulnSea

aircheng-org has 6 CVEs on record. Disclosure cadence is accelerating: 6 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 6. The median CVSS is 6.0 (medium). None have a confirmed exploitation report.

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
6.0
Publish → KEV
Last 90 days
6 prev 0

Products

  • iWebShop-5 6
6
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

aircheng-org vulnerabilities

CVEs affecting aircheng-org, newest first. Open any entry for full detail, references, and exploit status.

6 CVEsRSS

CVE-2026-86670Low· 3.7PoC
2w ago

A flaw has been found in aircheng-org iWebShop-5 up to 5.15

A flaw has been found in aircheng-org iWebShop-5 up to 5.15. This impacts an unknown function of the file controllers/admin.php of the component Authentication Storage. Executing a manipulation of the argument Password can lead to passwo…

Twilightaircheng-org · iWebShop-5EPSS 0.25%via NVD
CVE-2026-86669High· 7.3PoC
2w ago

A vulnerability was detected in aircheng-org iWebShop-5 up to 5.15

A vulnerability was detected in aircheng-org iWebShop-5 up to 5.15. This affects the function Login of the file controllers/systemseller.php. Performing a manipulation of the argument Name results in improper authentication. It is possib…

Midnightaircheng-org · iWebShop-5EPSS 0.40%via NVD
CVE-2026-86668Medium· 4.3PoC
2w ago

A security vulnerability has been detected in aircheng-org iWebShop-5 up to 5.15

A security vulnerability has been detected in aircheng-org iWebShop-5 up to 5.15. The impacted element is the function uploadFile of the file controllers/pic.php. Such manipulation of the argument outerSrc/selectPhoto leads to cross site…

Twilightaircheng-org · iWebShop-5EPSS 0.27%via NVD
CVE-2026-86667Medium· 4.7PoC
2w ago

A weakness has been identified in aircheng-org iWebShop-5 up to 5.15

A weakness has been identified in aircheng-org iWebShop-5 up to 5.15. The affected element is the function member_list of the file controllers/member.php. This manipulation of the argument Search causes sql injection. The attack is possi…

Twilightaircheng-org · iWebShop-5EPSS 0.21%via NVD
CVE-2026-86666High· 7.3PoC
2w ago

A security flaw has been discovered in aircheng-org iWebShop-5 up to 5.15

A security flaw has been discovered in aircheng-org iWebShop-5 up to 5.15. Impacted is the function upload_json/uploadFile of the file controllers/pic.php. The manipulation results in unrestricted upload. The attack can be executed remot…

Midnightaircheng-org · iWebShop-5EPSS 0.50%via NVD
CVE-2026-86665High· 7.3PoC
2w ago

A vulnerability was identified in aircheng-org iWebShop-5 up to 5.15

A vulnerability was identified in aircheng-org iWebShop-5 up to 5.15. This issue affects the function Update::index of the file controllers/update.php. The manipulation leads to missing authorization. Remote exploitation of the attack is…

Midnightaircheng-org · iWebShop-5EPSS 0.39%via NVD
aircheng-org vulnerabilities (CVEs) · VulnSea