Maracms is a content management system with a narrow, focused product portfolio characterized by a durable pattern of file-upload validation issues. The recurring weakness—unrestricted upload of files with dangerous types—reflects a common gap in web-application input handling that can permit execution of attacker-supplied code. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Maracms over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-25042HIGH An arbitrary file upload issue exists in Mara CMS 7.5. In order to exploit this, an attacker must have a valid authenticated (admin/manager) session and make a codebase/dir.php?typ | Sep 3, 2020 | 7.2 | 42 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Maracms.
Media articles that mention a CVE ID that affects a product developed by Maracms — matched by CVE ID, not by vendor name.