Vulnerabilities (CVE)

Filtered by vendor Maxsite Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-2487 1 Maxsite 1 Maxsite 2025-04-09 7.5 HIGH N/A
SQL injection vulnerability in index.php in MAXSITE 1.10 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter in a webboard action.
CVE-2023-36291 1 Maxsite 1 Maxsite Cms 2024-11-21 N/A 6.1 MEDIUM
Cross Site Scripting vulnerability in Maxsite CMS v.108.7 allows a remote attacker to execute arbitrary code via the f_content parameter in the admin/page_new file.
CVE-2021-35265 1 Maxsite 1 Maxsite Cms 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
A reflected cross-site scripting (XSS) vulnerability in MaxSite CMS before V106 via product/page/* allows remote attackers to inject arbitrary web script to a page.