CVE-2024-46654
- EPSS 0.11%
- Veröffentlicht 20.09.2024 19:15:16
- Zuletzt bearbeitet 28.04.2025 17:51:42
A stored cross-site scripting (XSS) vulnerability in the Add Scheduled Task module of Maccms10 v2024.1000.4040 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2024-32391
- EPSS 0.34%
- Veröffentlicht 19.04.2024 21:15:08
- Zuletzt bearbeitet 30.04.2025 16:47:21
Cross Site Scripting vulnerability in MacCMS v.10 v.2024.1000.3000 allows a remote attacker to execute arbitrary code via a crafted payload.
CVE-2022-47872
- EPSS 0.79%
- Veröffentlicht 01.02.2023 22:15:08
- Zuletzt bearbeitet 21.11.2024 07:32:26
A Server-Side Request Forgery (SSRF) in maccms10 v2021.1000.2000 allows attackers to force the application to make arbitrary requests via a crafted payload injected into the Name parameter under the Interface address module.
CVE-2022-44870
- EPSS 0.26%
- Veröffentlicht 06.01.2023 03:15:08
- Zuletzt bearbeitet 09.04.2025 21:15:42
A reflected cross-site scripting (XSS) vulnerability in maccms10 v2022.1000.3032 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter under the AD Management module.
CVE-2022-35148
- EPSS 0.22%
- Veröffentlicht 17.08.2022 21:15:09
- Zuletzt bearbeitet 21.11.2024 07:10:49
maccms10 v2021.1000.1081 to v2022.1000.3031 was discovered to contain a SQL injection vulnerability via the table parameter at database/columns.html.
CVE-2022-31303
- EPSS 0.19%
- Veröffentlicht 21.06.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 07:04:18
maccms10 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Server Group text field.
CVE-2022-31302
- EPSS 0.19%
- Veröffentlicht 21.06.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 07:04:18
maccms8 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Server Group text field.
CVE-2021-43707
- EPSS 0.24%
- Veröffentlicht 31.03.2022 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:29:39
Cross Site Scripting (XSS) vulnerability exists in Maccms v10 via link_Name parameter.
CVE-2022-27886
- EPSS 0.22%
- Veröffentlicht 25.03.2022 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:56:24
Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/ulog/index.html via the wd parameter.
CVE-2022-27887
- EPSS 0.22%
- Veröffentlicht 25.03.2022 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:56:25
Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/vod/data.html via the repeat parameter.