Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

4Everwlo

#18514of 53,638
14.6Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2024-32997
9.8
2024-10-29
Pluxml · Pluxml · CVE-2024-48138
**Name of the Vulnerable Software and Affected Versions** PluXml versions 5.8.16 and lower **Description** A remote code execution issue in the /PluXml/core/admin/parametres edittpl.php component allows attackers to execute arbitrary code by injecting a crafted payload into a template. **Recommendations** For PluXml versions 5.8.16 and lower, consider disabling access to the /PluXml/core/admin/parametres edittpl.php component until a patch is available to prevent exploitation.
PT-2024-32096
4.8
2024-09-20
Maccms10 · Maccms10 · CVE-2024-46654
**Name of the Vulnerable Software and Affected Versions** Maccms10 version 2024.1000.4040 **Description** A stored cross-site scripting (XSS) vulnerability in the Add Scheduled Task module allows attackers to execute arbitrary web scripts or HTML via a crafted payload. **Recommendations** For Maccms10 version 2024.1000.4040, consider disabling the Add Scheduled Task module until a patch is available to prevent exploitation of the stored XSS vulnerability.