Vulnerabilities > Sitemagic > Sitemagic > 4.4.1

DATE CVE VULNERABILITY TITLE RISK
2019-10-23 CVE-2019-18220 Cross-Site Request Forgery (CSRF) vulnerability in Sitemagic 4.4.1
Sitemagic CMS 4.4.1 is affected by a Cross-Site-Request-Forgery (CSRF) issue as it doesn't implement any method to validate incoming requests, allowing the execution of critical functionalities via spoofed requests.
network
sitemagic CWE-352
6.8
2019-10-23 CVE-2019-18219 Cross-site Scripting vulnerability in Sitemagic 4.4.1
Sitemagic CMS 4.4.1 is affected by a Cross-Site-Scripting (XSS) vulnerability, as it fails to validate user input.
network
sitemagic CWE-79
4.3