Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2025-29117 | A vulnerability was identified in Magicblack MacCMS 2025.1000.4050. This affects an unknown part of the component API Handler. The manipulation of the argument cjurl leads to server-side request forgery. The attack can be initiated remotely. The exploit is publicly available and might be used. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 08 Oct 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:maccms:maccms:10.0:2025.1000.4050:*:*:*:*:*:* |
Mon, 15 Sep 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 15 Sep 2025 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Maccms
Maccms maccms |
|
Vendors & Products |
Maccms
Maccms maccms |
Sun, 14 Sep 2025 11:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was identified in Magicblack MacCMS 2025.1000.4050. This affects an unknown part of the component API Handler. The manipulation of the argument cjurl leads to server-side request forgery. The attack can be initiated remotely. The exploit is publicly available and might be used. | |
Title | Magicblack MacCMS API server-side request forgery | |
Weaknesses | CWE-918 | |
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-15T20:13:17.742Z
Reserved: 2025-09-13T17:29:22.553Z
Link: CVE-2025-10397

Updated: 2025-09-15T20:13:09.278Z

Status : Analyzed
Published: 2025-09-14T11:15:29.943
Modified: 2025-10-08T14:24:16.430
Link: CVE-2025-10397

No data.

Updated: 2025-09-15T10:43:29Z