VYPR

Maurycms

by Cms.maury91

CVEs (2)

  • CVE-2008-6952Aug 12, 2009
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in Rss.php in MauryCMS 0.53.2 and earlier allows remote attackers to execute arbitrary SQL commands via the c parameter.

  • CVE-2008-6951Aug 12, 2009
    risk 0.00cvss epss 0.01

    MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/browser/default/browser.html, which allows remote attackers to upload arbitrary files via a direct request.