VYPR

QuMagie

by QuMagie

CVEs (10)

  • CVE-2025-52425CriNov 7, 2025
    risk 0.64cvss 9.8epss 0.00

    An SQL injection vulnerability has been reported to affect QuMagie. A remote attacker can exploit the vulnerability to execute unauthorized code or commands. We have already fixed the vulnerability in the following versions: QuMagie 2.7.0 and later

  • CVE-2023-39295HigNov 10, 2023
    risk 0.57cvss 8.8epss 0.02

    An OS command injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to execute commands via a network. We have already fixed the vulnerability in the following version: QuMagie 2.1.3 and later

  • CVE-2024-38642HigSep 6, 2024
    risk 0.51cvss 7.8epss 0.00

    An improper certificate validation vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow local network users to compromise the security of the system via unspecified vectors. We have already fixed the vulnerability in the following…

  • CVE-2025-58464HigNov 7, 2025
    risk 0.49cvss 7.5epss 0.00

    A relative path traversal vulnerability has been reported to affect QuMagie. If a remote attacker, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following version: QuMagie 2.7.3…

  • CVE-2023-47560HigJan 5, 2024
    risk 0.48cvss 7.4epss 0.01

    An OS command injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to execute commands via a network. We have already fixed the vulnerability in the following version: QuMagie 2.2.1 and later

  • CVE-2023-41285HigNov 10, 2023
    risk 0.48cvss 7.4epss 0.01

    A SQL injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: QuMagie 2.1.4 and later

  • CVE-2023-41284HigNov 10, 2023
    risk 0.48cvss 7.4epss 0.01

    A SQL injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: QuMagie 2.1.4 and later

  • CVE-2025-62857MedJan 2, 2026
    risk 0.40cvss 6.1epss 0.00

    A cross-site scripting (XSS) vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vulnerability to bypass security mechanisms or read application data. We have already fixed the vulnerability in the following version: QuMagie 2.8.1 and…

  • CVE-2023-47559MedJan 5, 2024
    risk 0.36cvss 5.5epss 0.00

    A cross-site scripting (XSS) vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: QuMagie 2.2.1 and later

  • CVE-2023-47219LowJan 5, 2024
    risk 0.23cvss 3.5epss 0.01

    A SQL injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: QuMagie 2.2.1 and later