📦 Maccms

by Maccms

🔍 What is Maccms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-28091

CRITICAL CVSS 9.1 Mar 28, 2025

This SSRF vulnerability in maccms10 allows attackers to make the server send arbitrary HTTP requests to internal or external systems via the 'Add Article' functionality. Attackers can potentially acce...

CVE-2025-28089

CRITICAL CVSS 9.1 Mar 28, 2025

This SSRF vulnerability in maccms10 allows attackers to make the server send unauthorized requests to internal systems via the Scheduled Task function. Attackers can potentially access internal servic...

CVE-2025-45474

HIGH CVSS 7.3 May 29, 2025

CVE-2025-45474 is a Server-Side Request Forgery (SSRF) vulnerability in maccms10's email settings functionality. Attackers can exploit this to make unauthorized requests from the vulnerable server to ...

CVE-2024-32391

HIGH CVSS 7.3 Apr 19, 2024

This CVE describes a Cross-Site Scripting (XSS) vulnerability in MacCMS v.10 version 2024.1000.3000 that allows remote attackers to inject malicious scripts into web pages. Attackers can execute arbit...

CVE-2022-47872

HIGH CVSS 8.8 Feb 1, 2023

This Server-Side Request Forgery (SSRF) vulnerability in maccms10 allows attackers to make the application send arbitrary HTTP requests to internal or external systems by injecting malicious payloads ...

CVE-2025-10395

MEDIUM CVSS 4.7 Sep 14, 2025

This vulnerability in Magicblack MacCMS 2025.1000.4050 allows remote attackers to perform server-side request forgery (SSRF) by manipulating the 'cjurl' argument in the 'col_url' function of the Sched...

CVE-2025-10122

MEDIUM CVSS 4.7 Sep 9, 2025

This SQL injection vulnerability in Maccms10 allows attackers to manipulate database queries through the 'where' parameter in the 'rep' function. Attackers can potentially read, modify, or delete data...