Vulnerabilities
Vulnerable Software
Umbraco:  >> Umbraco Cms  >> 10.8.0  Security Vulnerabilities
Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.0, Backoffice users with permissions to create packages can use path traversal and thereby write outside of the expected location. Versions 8.18.10, 10.8.1, and 12.3.0 contain a patch for this issue.
CVSS Score
7.7
EPSS Score
0.001
Published
2023-12-12
Umbraco is an ASP.NET content management system (CMS). Starting in 10.0.0 and prior to versions 10.8.1 and 12.3.4, Umbraco contains a cross-site scripting (XSS) vulnerability enabling attackers to bring malicious content into a website or application. Versions 10.8.1 and 12.3.4 contain a patch for this issue.
CVSS Score
4.3
EPSS Score
0.006
Published
2023-12-12


Contact Us

Shodan ® - All rights reserved