Vulnerabilities (CVE)

Filtered by vendor Maccms Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-21359 1 Maccms 1 Maccms 2021-08-16 7.5 HIGH 9.8 CRITICAL
An arbitrary file upload vulnerability in the Template Upload function of Maccms10 allows attackers bypass the suffix whitelist verification to execute arbitrary code via adding a character to the end of the uploaded file's name.
CVE-2017-17733 1 Maccms 1 Maccms 2019-10-03 7.5 HIGH 9.8 CRITICAL
Maccms 8.x allows remote command execution via the wd parameter in an index.php?m=vod-search request.