İçeriğe atla
Noroxi

acquia kayıtları

acquia üreticisine ait 43 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%83,7
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

43 kayıt
  • CVE-2022-25772
    43Planlayın

    A cross-site scripting (XSS) vulnerability in the web tracking component of Mautic before 4.3.0 allows remote attackers to inject executable

    OrtaCVSS 6,1İstismar yokEPSS %62

    acquia · mautic20 Haz 2022

  • CVE-2024-47051
    40Planlayın

    Remote Code Execution & File Deletion in Asset Uploads

    KritikCVSS 9,9Kavram kanıtıEPSS %2

    acquia · mautic26 Şub 2025

  • CVE-2020-35125
    39İzleyin

    A cross-site scripting (XSS) vulnerability in the forms component of Mautic before 3.2.4 allows remote attackers to inject executable JavaSc

    KritikCVSS 9,6İstismar yokEPSS %3

    acquia · mautic9 Şub 2021

  • CVE-2020-35124
    39İzleyin

    A cross-site scripting (XSS) vulnerability in the assets component of Mautic before 3.2.4 allows remote attackers to inject executable JavaS

    KritikCVSS 9,6İstismar yokEPSS %2

    acquia · mautic28 Oca 2021

  • CVE-2020-35128
    36İzleyin

    Mautic before 3.2.4 is affected by stored XSS.

    KritikCVSS 9,0İstismar yokEPSS %2

    acquia · mautic19 Oca 2021

  • CVE-2021-27915
    36İzleyin

    XSS Cross-site Scripting Stored (XSS) - Description field

    KritikCVSS 9,0İstismar yokEPSS %1

    acquia · mautic17 Eyl 2024

  • CVE-2022-25769
    36İzleyin

    Improper regex in htaccess file

    KritikCVSS 9,1İstismar yokEPSS %1

    acquia · mautic18 Eyl 2024

  • CVE-2017-8874
    35İzleyin

    Multiple cross-site request forgery (CSRF) vulnerabilities in Mautic 1.4.1 allow remote attackers to hijack the authentication of users for

    YüksekCVSS 8,8İstismar yokEPSS %1

    acquia · mautic10 May 2017

  • CVE-2026-3105
    35İzleyin

    SQL Injection in Contact Activity API Sorting

    YüksekCVSS 8,8İstismar yokEPSS %0

    acquia · mautic24 Şub 2026

  • Mautic versions 2.0.0 - 2.11.0 with a SSO plugin installed could allow a disabled user to still login using email address

    YüksekCVSS 8,1İstismar yokEPSS %1

    mautic · mautic3 Oca 2018

  • CVE-2021-27916
    32İzleyin

    Relative Path Traversal / Arbitrary File Deletion in Mautic (GrapesJS Builder)

    YüksekCVSS 8,1İstismar yokEPSS %1

    acquia · mautic17 Eyl 2024

  • CVE-2025-14472
    32İzleyin

    Acquia Content Hub - Moderately critical - Cross-Site Request Forgery - SA-CONTRIB-2025-125

    YüksekCVSS 8,1İstismar yokEPSS %0

    acquia · acquia content hub28 Oca 2026

  • CVE-2015-8754
    30İzleyin

    The Mollom module 6.x-2.7 before 6.x-2.15 for Drupal allows remote attackers to bypass intended access restrictions and modify the mollom bl

    YüksekCVSS 7,5İstismar yokEPSS %1

    acquia · mollom8 Oca 2016

  • CVE-2024-47053
    30İzleyin

    Improper Authorization in Reporting API

    YüksekCVSS 7,7İstismar yokEPSS %1

    acquia · mautic26 Şub 2025

  • CVE-2025-9954
    30İzleyin

    Acquia DAM - Moderately critical - Access bypass, Information Disclosure - SA-CONTRIB-2025-105

    YüksekCVSS 7,5İstismar yokEPSS %0

    acquia · dam29 Eki 2025

  • CVE-2022-25770
    30İzleyin

    Insufficient authentication in upgrade flow

    YüksekCVSS 7,5İstismar yokEPSS %0

    acquia · mautic18 Eyl 2024

  • CVE-2022-25775
    28İzleyin

    SQL Injection in dynamic Reports

    YüksekCVSS 7,2İstismar yokEPSS %1

    acquia · mautic18 Eyl 2024

  • Mautic versions 1.0.0 - 2.11.0 are vulnerable to allowing any authorized Mautic user session (must be logged into Mautic) to use the Fileman

    OrtaCVSS 6,5İstismar yokEPSS %1

    mautic · mautic3 Oca 2018

  • CVE-2022-25777
    26İzleyin

    Server-Side Request Forgery in Asset section

    OrtaCVSS 6,5İstismar yokEPSS %0

    acquia · mautic18 Eyl 2024

  • CVE-2022-25776
    26İzleyin

    Sensitive Data Exposure due to inadequate user permission settings

    OrtaCVSS 6,5İstismar yokEPSS %0

    acquia · mautic18 Eyl 2024

  • CVE-2022-25768
    26İzleyin

    Improper Access Control in UI upgrade process

    OrtaCVSS 6,5İstismar yokEPSS %0

    acquia · mautic18 Eyl 2024

  • CVE-2021-27909
    25İzleyin

    XSS vulnerability on password reset page

    OrtaCVSS 6,1Kavram kanıtıEPSS %4

    acquia · mautic30 Ağu 2021

  • CVE-2018-11198
    24İzleyin

    An issue was discovered in Mautic 2.13.1.

    OrtaCVSS 6,1İstismar yokEPSS %1

    acquia · mautic6 Eyl 2019

  • Mautic version 2.1.0 - 2.11.0 is vulnerable to an inline JS XSS attack when using Mautic forms on a Mautic landing page using GET parameters

    OrtaCVSS 6,1İstismar yokEPSS %1

    mautic · mautic3 Oca 2018

  • CVE-2018-11200
    24İzleyin

    An issue was discovered in Mautic 2.13.1.

    OrtaCVSS 6,1İstismar yokEPSS %1

    acquia · mautic20 Eyl 2019