A vulnerability was found in MRCMS 3.1.2. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Multiple endpoints might be affected.
References
Link | Resource |
---|---|
https://github.com/bdkuzma/vuln/issues/8 | Exploit Issue Tracking Third Party Advisory |
https://vuldb.com/?ctiid.307428 | Permissions Required VDB Entry |
https://vuldb.com/?id.307428 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.563555 | Third Party Advisory VDB Entry |
https://github.com/bdkuzma/vuln/issues/8 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
12 Jun 2025, 17:29
Type | Values Removed | Values Added |
---|---|---|
First Time |
Mrcms
Mrcms mrcms |
|
References | () https://github.com/bdkuzma/vuln/issues/8 - Exploit, Issue Tracking, Third Party Advisory | |
References | () https://vuldb.com/?ctiid.307428 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.307428 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.563555 - Third Party Advisory, VDB Entry | |
CPE | cpe:2.3:a:mrcms:mrcms:3.1.2:*:*:*:*:*:*:* |
06 May 2025, 15:16
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/bdkuzma/vuln/issues/8 - | |
Summary |
|
06 May 2025, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-06 07:15
Updated : 2025-06-12 17:29
NVD link : CVE-2025-4327
Mitre link : CVE-2025-4327
CVE.ORG link : CVE-2025-4327
JSON object : View
Products Affected
mrcms
- mrcms