Vulnerabilities > Motocms

DATE CVE VULNERABILITY TITLE RISK
2023-08-03 CVE-2023-36213 SQL Injection vulnerability in Motocms 3.4.3
SQL injection vulnerability in MotoCMS v.3.4.3 allows a remote attacker to gain privileges via the keyword parameter of the search function.
network
low complexity
motocms CWE-89
critical
9.8
2023-08-01 CVE-2023-36210 Injection vulnerability in Motocms 3.4.3
MotoCMS Version 3.4.3 Store Category Template was discovered to contain a Server-Side Template Injection (SSTI) vulnerability via the keyword parameter.
network
low complexity
motocms CWE-74
critical
9.8