CVE-2022-47872
- EPSS 0.79%
- Veröffentlicht 01.02.2023 22:15:08
- Zuletzt bearbeitet 21.11.2024 07:32:26
A Server-Side Request Forgery (SSRF) in maccms10 v2021.1000.2000 allows attackers to force the application to make arbitrary requests via a crafted payload injected into the Name parameter under the Interface address module.
CVE-2022-44870
- EPSS 0.26%
- Veröffentlicht 06.01.2023 03:15:08
- Zuletzt bearbeitet 09.04.2025 21:15:42
A reflected cross-site scripting (XSS) vulnerability in maccms10 v2022.1000.3032 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter under the AD Management module.
CVE-2022-35148
- EPSS 0.22%
- Veröffentlicht 17.08.2022 21:15:09
- Zuletzt bearbeitet 21.11.2024 07:10:49
maccms10 v2021.1000.1081 to v2022.1000.3031 was discovered to contain a SQL injection vulnerability via the table parameter at database/columns.html.
CVE-2022-31303
- EPSS 0.19%
- Veröffentlicht 21.06.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 07:04:18
maccms10 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Server Group text field.
CVE-2022-31302
- EPSS 0.19%
- Veröffentlicht 21.06.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 07:04:18
maccms8 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Server Group text field.
CVE-2021-43707
- EPSS 0.24%
- Veröffentlicht 31.03.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:29:39
Cross Site Scripting (XSS) vulnerability exists in Maccms v10 via link_Name parameter.
CVE-2022-27885
- EPSS 0.22%
- Veröffentlicht 25.03.2022 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:56:24
Maccms v10 was discovered to contain multiple reflected cross-site scripting (XSS) vulnerabilities in /admin.php/admin/website/data.html via the select and input parameters.
CVE-2022-27887
- EPSS 0.22%
- Veröffentlicht 25.03.2022 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:56:25
Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/vod/data.html via the repeat parameter.
CVE-2022-27886
- EPSS 0.22%
- Veröffentlicht 25.03.2022 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:56:24
Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/ulog/index.html via the wd parameter.
CVE-2022-27884
- EPSS 0.22%
- Veröffentlicht 25.03.2022 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:56:24
Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/plog/index.html via the wd parameter.