machsol records
2 published records for vendor machsol.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2025-57460Proof of concept | File upload vulnerability in machsol machpanel 8.0.32 allows attacker to gain a webshell.machsol · machpanel · CWE-434 | Critical9.8 | — | 0.4% | Dec 29, 2025 |
24Monitor | CVE-2025-57462Proof of concept | Stored cross-site scripting (xss) in machsol machpanel 8.0.32 allows attackers to execute arbitrary web scripts or HTML via a crafted PDF fimachsol · machpanel · CWE-79 | Medium6.1 | — | 0.2% | Dec 29, 2025 |
- CVE-2025-5746039Monitor
File upload vulnerability in machsol machpanel 8.0.32 allows attacker to gain a webshell.
CriticalCVSS 9.8Proof of conceptEPSS 0%machsol · machpanelDec 29, 2025
- CVE-2025-5746224Monitor
Stored cross-site scripting (xss) in machsol machpanel 8.0.32 allows attackers to execute arbitrary web scripts or HTML via a crafted PDF fi
MediumCVSS 6.1Proof of conceptEPSS 0%machsol · machpanelDec 29, 2025