Gentics develops a content management system that has surfaced vulnerabilities centered on untrusted deserialization and cross-site scripting, reflecting risks inherent to web-facing content-handling platforms. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gentics over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-30981HIGH An issue was discovered in Gentics CMS before 5.43.1. By uploading a malicious ZIP file, an attacker is able to deserialize arbitrary data and hence can potentially achieve Java co | Jul 17, 2022 | 8.8 | 27 | NO | NO |
CVE-2022-30982MEDIUM An issue was discovered in Gentics CMS before 5.43.1. There is stored XSS in the profile description and in the username. | Jul 17, 2022 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gentics.
Media articles that mention a CVE ID that affects a product developed by Gentics — matched by CVE ID, not by vendor name.