Products: 1
    Vulnerabilities: 22
    Known Exploited: 0
    1
    Critical Level Threats
    2
    High Level Threats
    10
    Medium Level Threats
    9
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-31272

    Super Administrator Creation Without Authentication in MRCMS 3.1.2

    Last Modified: Apr 15, 2026
    Published: Apr 07, 2026

    CVE-2026-29909

    MRCMS V3.1.2 contains an unauthenticated directory enumeration vulnerability in the file management module. The /admin/file/list.do endpoint lacks authentication controls and proper input validation, allowing remote attackers to enumerate directory contents on the server without any credentials.

    Last Modified: Apr 03, 2026
    Published: Mar 30, 2026

    CVE-2025-50581

    MRCMS v3.1.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/group/save.do.

    Last Modified: Sep 23, 2025
    Published: Jul 18, 2025

    CVE-2025-4327

    MRCMS cross-site request forgery

    Last Modified: Jun 12, 2025
    Published: May 06, 2025

    CVE-2025-4326

    MRCMS Add Fragment Page add.do cross site scripting

    Last Modified: Jun 17, 2025
    Published: May 06, 2025
    Items Per Page
    Mrcms Vulnerabilities & Security CVEs | CVE-DB