Vulnerabilities (CVE)

Filtered by vendor Motocms Subscribe
Filtered by product Motocms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-36213 1 Motocms 1 Motocms 2024-11-21 N/A 9.8 CRITICAL
SQL injection vulnerability in MotoCMS v.3.4.3 allows a remote attacker to gain privileges via the keyword parameter of the search function.
CVE-2023-36210 1 Motocms 1 Motocms 2024-11-21 N/A 9.8 CRITICAL
MotoCMS Version 3.4.3 Store Category Template was discovered to contain a Server-Side Template Injection (SSTI) vulnerability via the keyword parameter.