📦 Mrcms

by Mrcms

🔍 What is Mrcms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-48177

HIGH CVSS 8.8 Oct 28, 2024

MRCMS 3.1.2 contains a SQL injection vulnerability in the article deletion endpoint that allows attackers to execute arbitrary SQL commands. This affects administrators or users with access to the adm...

CVE-2024-24161

HIGH CVSS 7.5 Feb 2, 2024

MRCMS 3.0 contains an arbitrary file read vulnerability in the /admin/file/edit.do endpoint where the path parameter is not properly filtered. This allows authenticated attackers to read sensitive fil...

CVE-2025-25768

MEDIUM CVSS 5.4 Feb 21, 2025

MRCMS v3.1.2 contains a server-side template injection vulnerability in DispatcherServlet.java that allows attackers to execute arbitrary code on the server. This affects all systems running the vulne...

CVE-2025-25765

MEDIUM CVSS 4.0 Feb 21, 2025

MRCMS v3.1.2 contains an arbitrary file write vulnerability in the /file/save.do component that allows attackers to write arbitrary files to the server. This affects all systems running MRCMS v3.1.2. ...