Vulnerabilities > Microweber > Microweber > 2.0.1

DATE CVE VULNERABILITY TITLE RISK
2023-12-08 CVE-2023-48122 Unspecified vulnerability in Microweber 2.0.1/2.0.2/2.0.3
An issue in microweber v.2.0.1 and fixed in v.2.0.4 allows a remote attacker to obtain sensitive information via the HTTP GET method.
network
low complexity
microweber
7.5
2023-11-08 CVE-2023-47379 Cross-site Scripting vulnerability in Microweber 2.0.1
Microweber CMS version 2.0.1 is vulnerable to stored Cross Site Scripting (XSS) via the profile picture file upload functionality.
network
low complexity
microweber CWE-79
5.4