📦 Powercms

by Alfasado

🔍 What is Powercms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-20850

CRITICAL CVSS 9.8 Nov 24, 2021

This vulnerability allows remote attackers to execute arbitrary operating system commands on PowerCMS servers through the XMLRPC API. It affects PowerCMS versions 5.19 and earlier, 4.49 and earlier, 3...

CVE-2025-46359

HIGH CVSS 7.2 Jul 31, 2025

A path traversal vulnerability in PowerCMS backup/restore feature allows product administrators to execute arbitrary code by restoring malicious backup files. This affects multiple PowerCMS versions a...

CVE-2025-54757

MEDIUM CVSS 6.5 Jul 31, 2025

PowerCMS versions before 6.7.1, 5.3.1, and 4.6.1 allow unrestricted upload of dangerous files. If a product administrator accesses a malicious file uploaded by a product user, arbitrary script executi...

CVE-2025-41391

MEDIUM CVSS 5.4 Jul 31, 2025

A stored cross-site scripting (XSS) vulnerability in PowerCMS allows attackers to inject malicious scripts that execute in users' browsers when viewing compromised content. This affects all PowerCMS u...