Description

MASA CMS is an Enterprise Content Management platform based on open source technology. Versions prior to 7.4.5, 7.3.12, and 7.2.7 contain a SQL injection vulnerability in the `processAsyncObject` method that can result in remote code execution. Versions 7.4.5, 7.3.12, and 7.2.7 contain a fix for the issue.

INFO

Published Date :

2025-08-11T20:38:56.268Z

Last Modified :

2025-12-03T16:03:56.147Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2024-32640 vulnerability.

Vendors Products
Masacms
  • Masacms

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact