Vulnerabilities > Mayan Edms

DATE CVE VULNERABILITY TITLE RISK
2023-02-07 CVE-2022-47419 Cross-site Scripting vulnerability in Mayan-Edms Mayan Edms 4.3.3
An XSS vulnerability was discovered in the Mayan EDMS DMS.
network
low complexity
mayan-edms CWE-79
5.4
2018-09-03 CVE-2018-16407 Cross-site Scripting vulnerability in Mayan-Edms Mayan Edms
An issue was discovered in Mayan EDMS before 3.0.3.
network
mayan-edms CWE-79
4.3
2018-09-03 CVE-2018-16406 Cross-site Scripting vulnerability in Mayan-Edms Mayan Edms
An issue was discovered in Mayan EDMS before 3.0.2.
network
mayan-edms CWE-79
4.3
2018-09-03 CVE-2018-16405 Cross-site Scripting vulnerability in Mayan-Edms Mayan Edms
An issue was discovered in Mayan EDMS before 3.0.2.
network
mayan-edms CWE-79
4.3
2014-05-27 CVE-2014-3840 Cross-Site Scripting vulnerability in Mayan-Edms Mayan Edms 0.13
Multiple cross-site scripting (XSS) vulnerabilities in apps/common/templates/calculate_form_title.html in Mayan EDMS 0.13 allow remote authenticated users to inject arbitrary web script or HTML via a (1) tag or the (2) title of a source in a Staging folder, (3) Name field in a bootstrap setup, or Title field in a (4) smart link or (5) web form.
network
mayan-edms CWE-79
3.5