max-3000 kayıtları
max-3000 üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %12,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-284 Improper Access Control2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2021-27983İstismar yok | Remote Code Execution (RCE) vulnerability exists in MaxSite CMS v107.5 via the Documents page.max-3000 · maxsite cms | Kritik9,8 | — | %3,5 | 10 Ara 2021 |
40Planlayın | CVE-2022-25411İstismar yok | A Remote Code Execution (RCE) vulnerability at /admin/options in Maxsite CMS v180 allows attackers to execute arbitrary code via a crafted Pmax-3000 · maxsite cms · CWE-434 | Kritik9,8 | — | %3,0 | 28 Şub 2022 |
32İzleyin | CVE-2022-25412İstismar yok | Maxsite CMS v180 was discovered to contain multiple arbitrary file deletion vulnerabilities in /admin_page/all-files-update-ajax.php via themax-3000 · maxsite cms · CWE-22 | Yüksek8,1 | — | %1,1 | 28 Şub 2022 |
23İzleyin | CVE-2026-3395Kavram kanıtı | MaxSite CMS MarkItUp Preview AJAX Endpoint preview-ajax.php eval code injectionmax-3000 · maxsite cms · CWE-74 | Orta5,5 | — | %2,5 | 1 Mar 2026 |
21İzleyin | CVE-2022-25413İstismar yok | Maxsite CMS v108 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the parameter f_tags at /admin/page_edit/3.max-3000 · maxsite cms · CWE-79 | Orta5,4 | — | %0,5 | 28 Şub 2022 |
21İzleyin | CVE-2022-25410İstismar yok | Maxsite CMS v180 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the parameter f_file_description at /admin/max-3000 · maxsite cms · CWE-79 | Orta5,4 | — | %0,5 | 28 Şub 2022 |
8İzleyin | CVE-2025-12346İstismar yok | MaxSite CMS HTTP Header uploads-require-maxsite.php unrestricted uploadmax-3000 · maxsite cms · CWE-284 | Düşük2,1 | — | %0,4 | 27 Eki 2025 |
8İzleyin | CVE-2025-12347İstismar yok | MaxSite CMS save-file-ajax.php unrestricted uploadmax-3000 · maxsite cms · CWE-284 | Düşük2,1 | — | %0,4 | 27 Eki 2025 |
- CVE-2021-2798340Planlayın
Remote Code Execution (RCE) vulnerability exists in MaxSite CMS v107.5 via the Documents page.
KritikCVSS 9,8İstismar yokEPSS %3max-3000 · maxsite cms10 Ara 2021
- CVE-2022-2541140Planlayın
A Remote Code Execution (RCE) vulnerability at /admin/options in Maxsite CMS v180 allows attackers to execute arbitrary code via a crafted P
KritikCVSS 9,8İstismar yokEPSS %3max-3000 · maxsite cms28 Şub 2022
- CVE-2022-2541232İzleyin
Maxsite CMS v180 was discovered to contain multiple arbitrary file deletion vulnerabilities in /admin_page/all-files-update-ajax.php via the
YüksekCVSS 8,1İstismar yokEPSS %1max-3000 · maxsite cms28 Şub 2022
- CVE-2026-339523İzleyin
MaxSite CMS MarkItUp Preview AJAX Endpoint preview-ajax.php eval code injection
OrtaCVSS 5,5Kavram kanıtıEPSS %2max-3000 · maxsite cms1 Mar 2026
- CVE-2022-2541321İzleyin
Maxsite CMS v108 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the parameter f_tags at /admin/page_edit/3.
OrtaCVSS 5,4İstismar yokEPSS %0max-3000 · maxsite cms28 Şub 2022
- CVE-2022-2541021İzleyin
Maxsite CMS v180 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the parameter f_file_description at /admin/
OrtaCVSS 5,4İstismar yokEPSS %0max-3000 · maxsite cms28 Şub 2022
- CVE-2025-123468İzleyin
MaxSite CMS HTTP Header uploads-require-maxsite.php unrestricted upload
DüşükCVSS 2,1İstismar yokEPSS %0max-3000 · maxsite cms27 Eki 2025
- CVE-2025-123478İzleyin
MaxSite CMS save-file-ajax.php unrestricted upload
DüşükCVSS 2,1İstismar yokEPSS %0max-3000 · maxsite cms27 Eki 2025