Metrics
Affected Vendors & Products
Wed, 08 Oct 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:maccms:maccms:10.0:2025.1000.4050:*:*:*:*:*:* |
Mon, 15 Sep 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Sep 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Maccms
Maccms maccms |
|
| Vendors & Products |
Maccms
Maccms maccms |
Sun, 14 Sep 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Magicblack MacCMS 2025.1000.4050. This affects an unknown part of the component API Handler. The manipulation of the argument cjurl leads to server-side request forgery. The attack can be initiated remotely. The exploit is publicly available and might be used. | |
| Title | Magicblack MacCMS API server-side request forgery | |
| Weaknesses | CWE-918 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-14T11:02:05.683Z
Updated: 2025-09-15T20:13:17.742Z
Reserved: 2025-09-13T17:29:22.553Z
Link: CVE-2025-10397
Updated: 2025-09-15T20:13:09.278Z
Status : Analyzed
Published: 2025-09-14T11:15:29.943
Modified: 2025-10-08T14:24:16.430
Link: CVE-2025-10397
No data.