Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Majordomo CRITICAL 9.8
CVE-2026-27180

MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated remote code execution through supply chain compromise via update URL poisoning…

Patch available
Fix from $2,300 2026-02-18
Majordomo HIGH 7.5
CVE-2026-27181

MajorDoMo (aka Major Domestic Module) allows unauthenticated arbitrary module uninstallation through the market module. The market module's admin() m…

Patch available
Fix from $1,950 2026-02-18
Majordomo CRITICAL 9.8
CVE-2026-27174EPSS 7%

MajorDoMo (aka Major Domestic Module) allows unauthenticated remote code execution via the admin panel's PHP console feature. An include order bug in…

Patch available
Fix from $2,300 2026-02-18
Majordomo CRITICAL 9.8
CVE-2026-27175EPSS 7%

MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated OS command injection via rc/index.php. The $param variable from user input is …

Patch available
Fix from $2,300 2026-02-18
Majordomo CRITICAL 9.8
CVE-2026-27179

MajorDoMo (aka Major Domestic Module) contains an unauthenticated SQL injection vulnerability in the commands module. The commands_search.inc.php fil…

Patch available
Fix from $2,300 2026-02-18
Majordomo MEDIUM 6.1
CVE-2026-27176

MajorDoMo (aka Major Domestic Module) contains a reflected cross-site scripting (XSS) vulnerability in command.php. The $qry parameter is rendered di…

Patch available
Fix from $1,600 2026-02-18
Majordomo MEDIUM 6.1
CVE-2026-27177

MajorDoMo (aka Major Domestic Module) contains a stored cross-site scripting (XSS) vulnerability via the /objects/?op=set endpoint, which is intentio…

Patch available
Fix from $1,600 2026-02-18
Majordomo MEDIUM 6.1
CVE-2026-27178

MajorDoMo (aka Major Domestic Module) contains a stored cross-site scripting (XSS) vulnerability through method parameter injection into the shoutbox…

Patch available
Fix from $1,600 2026-02-18
Majordomo CRITICAL 9.8
CVE-2023-50917EPSS 38%

MajorDoMo (aka Major Domestic Module) before 0662e5e allows command execution via thumb.php shell metacharacters. NOTE: this is unrelated to the Majo…

Fix: 2023-11-15+
Fix from $2,300 2023-12-15