Skip to content
Noroxi

murasoftware records

9 published records for vendor murasoftware.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 23
  2. 26

Bar: total · dark part: CISA KEV.

All records

9 records
  • A vulnerability in the Remember Me function of Mura CMS before v10.0.580 allows attackers to bypass authentication via a crafted web request

    CriticalCVSS 9.8Proof of conceptEPSS 4%

    murasoftware · mura cmsFeb 1, 2023

  • Mura before 10.1.14 allows beanFeed.cfc getQuery sortby SQL injection.

    CriticalCVSS 9.8No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026

  • Mura before 10.1.14 allows beanFeed.cfc getQuery sortDirection SQL injection.

    CriticalCVSS 9.8No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026

  • The import form CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to upload and install malicious form definitions through a CS

    HighCVSS 8.8No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026

  • The Trash Restore CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to restore deleted content from the trash to unauthorized l

    HighCVSS 8.8No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026

  • MuraCMS through 10.1.10 contains a CSRF vulnerability in the Add To Group functionality for user management (cUsers.cfc addToGroup method) t

    HighCVSS 8.0No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026

  • MuraCMS through 10.1.10 contains a CSRF vulnerability that allows attackers to permanently destroy all deleted content stored in the trash s

    HighCVSS 8.1No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026

  • The update address CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to manipulate user address information through CSRF.

    HighCVSS 7.1No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026

  • MuraCMS through 10.1.10 contains a CSRF vulnerability in the bundle creation functionality (csettings.cfc createBundle method) that allows u

    MediumCVSS 6.5No exploitEPSS 0%

    murasoftware · mura cmsMar 18, 2026