Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
macs cms project macs cms 1.1.4f vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2023-43154
In Macrob7 Macs Framework Content Management System (CMS) 1.1.4f, loose comparison in "isValidLogin()" function during login attempt results in PHP type confusion vulnerability that leads to authentication bypass and takeover of the administrator account.
Macs Cms Project Macs Cms 1.1.4f
2 Github repositories
7.2
CVSSv3
CVE-2020-23045
Macrob7 Macs Framework Content Management System - 1.14f exists to contain a SQL injection vulnerability via the 'roleId' parameter of the `editRole` and `deletUser` modules.
Macs Cms Project Macs Cms 1.1.4f
6.1
CVSSv3
CVE-2020-23047
Macrob7 Macs Framework Content Management System - 1.14f exists to contain a cross-site scripting (XSS) vulnerability in the search input field of the search module.
Macs Cms Project Macs Cms 1.1.4f
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
cross-site scripting
CVE-2024-5158
XML external entity
CVE-2024-4262
CVE-2024-2036
CVE-2024-4985
CVE-2024-21791
remote attackers
CVE-2023-43208
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started