logo

Vulnerabilities in OpenSolution QuickCMS software

ID: f2217497-a8de-53ad-99b7-b9345a4ea9f0

STIX ID: report--f2217497-a8de-53ad-99b7-b9345a4ea9f0

Feed Name: CERT Polska

Threat Score
50/100

Date Published: 2025-08-28

Date Updated: 2026-04-19

Author: CERT Polska

...
...

CERT Polska published a coordinated disclosure for six vulnerabilities in OpenSolution QuickCMS 6.8 (CVE-2025-54540, CVE-2025-54541, CVE-2025-54542, CVE-2025-54543, CVE-2025-54544, CVE-2025-55175) including reflected and stored XSS issues, a CSRF that can delete pages, and a flaw that transmits credentials via GET; the report describes attack vectors, impacts, and credits the reporter while noting only version 6.8 was tested.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.