İçeriğe atla
Noroxi

murasoftware kayıtları

murasoftware üreticisine ait 9 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

  1. 23
  2. 26

Çubuk: toplam · koyu kısım: CISA KEV.

Tüm kayıtlar

9 kayıt
  • CVE-2022-47003
    40Planlayın

    A vulnerability in the Remember Me function of Mura CMS before v10.0.580 allows attackers to bypass authentication via a crafted web request

    KritikCVSS 9,8Kavram kanıtıEPSS %4

    murasoftware · mura cms1 Şub 2023

  • CVE-2025-67830
    39İzleyin

    Mura before 10.1.14 allows beanFeed.cfc getQuery sortby SQL injection.

    KritikCVSS 9,8İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026

  • CVE-2025-67829
    39İzleyin

    Mura before 10.1.14 allows beanFeed.cfc getQuery sortDirection SQL injection.

    KritikCVSS 9,8İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026

  • CVE-2025-55040
    35İzleyin

    The import form CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to upload and install malicious form definitions through a CS

    YüksekCVSS 8,8İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026

  • CVE-2025-55044
    35İzleyin

    The Trash Restore CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to restore deleted content from the trash to unauthorized l

    YüksekCVSS 8,8İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026

  • CVE-2025-55041
    32İzleyin

    MuraCMS through 10.1.10 contains a CSRF vulnerability in the Add To Group functionality for user management (cUsers.cfc addToGroup method) t

    YüksekCVSS 8,0İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026

  • CVE-2025-55046
    32İzleyin

    MuraCMS through 10.1.10 contains a CSRF vulnerability that allows attackers to permanently destroy all deleted content stored in the trash s

    YüksekCVSS 8,1İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026

  • CVE-2025-55045
    28İzleyin

    The update address CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to manipulate user address information through CSRF.

    YüksekCVSS 7,1İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026

  • CVE-2025-55043
    26İzleyin

    MuraCMS through 10.1.10 contains a CSRF vulnerability in the bundle creation functionality (csettings.cfc createBundle method) that allows u

    OrtaCVSS 6,5İstismar yokEPSS %0

    murasoftware · mura cms18 Mar 2026