Description

MASA CMS is an Enterprise Content Management platform based on open source technology. Versions prior to 7.4.6, 7.3.13, and 7.2.8 contain a SQL injection vulnerability in the `processAsyncObject` method that can result in remote code execution. Versions 7.4.6, 7.3.13, and 7.2.8 contain a fix for the issue.

INFO

Published Date :

2025-08-11T20:38:56.268Z

Last Modified :

2025-08-11T20:59:20.872Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2024-32640 vulnerability.

Vendors Products
Masacms
  • Masacms

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact