max-3000
Security Risk Profile
69
/100
highSecurity Risk Score
Comprehensive risk assessment based on 8 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 10, 2021 to present
8
Total CVEs
5
Critical+High
0
Exploited
4
Unpatched
Threat Assessment
Avg CVSS
7.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
69/100
high
Severity Distribution
Critical
2High
3Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
Malicious File Upload
3
2
XSS
2
3
Code Injection
1
4
Path Traversal
1
Most Affected Products
1. Max-3000 Maxsite Cms8
2. Maxsite CMS2
3. Maxsite MaxSite CMS1
Recent Vulnerabilities
See more →CVE-2026-3395
CVSS 6.9EPSS 0%medium
MaxSite CMS MarkItUp Preview AJAX Endpoint preview-ajax.php eval code injection
3/1/2026
CVE-2025-12347
CVSS 8.8high
MaxSite CMS save-file-ajax.php unrestricted upload
10/28/2025🔧 No Patch
CVE-2025-12346
CVSS 8.8high
MaxSite CMS HTTP Header uploads-require-maxsite.php unrestricted upload
10/28/2025🔧 No Patch
CVE-2022-25413
CVSS 5.4medium
2/28/2022
CVE-2022-25412
CVSS 8.1high
2/28/2022
CVE-2022-25411
CVSS 9.8critical
2/28/2022🔧 No Patch
CVE-2022-25410
CVSS 5.4medium
2/28/2022
CVE-2021-27983
CVSS 9.8critical
12/10/2021🔧 No Patch
Monitor max-3000 in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.