Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2023-36291
Disclosure Date: July 03, 2023 (last updated October 08, 2023)
Cross Site Scripting vulnerability in Maxsite CMS v.108.7 allows a remote attacker to execute arbitrary code via the f_content parameter in the admin/page_new file.
0
Attacker Value
Unknown
CVE-2022-25413
Disclosure Date: February 28, 2022 (last updated February 23, 2025)
Maxsite CMS v108 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the parameter f_tags at /admin/page_edit/3.
0
Attacker Value
Unknown
CVE-2022-25412
Disclosure Date: February 28, 2022 (last updated February 23, 2025)
Maxsite CMS v180 was discovered to contain multiple arbitrary file deletion vulnerabilities in /admin_page/all-files-update-ajax.php via the dir and deletefile parameters.
0
Attacker Value
Unknown
CVE-2022-25411
Disclosure Date: February 28, 2022 (last updated February 23, 2025)
A Remote Code Execution (RCE) vulnerability at /admin/options in Maxsite CMS v180 allows attackers to execute arbitrary code via a crafted PHP file.
0
Attacker Value
Unknown
CVE-2022-25410
Disclosure Date: February 28, 2022 (last updated February 23, 2025)
Maxsite CMS v180 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the parameter f_file_description at /admin/files.
0