S
SSCMS
Security Risk Profile
36
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 16 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from May 3, 2022 to present
16
Total CVEs
7
Critical+High
0
Exploited
6
Unpatched
Threat Assessment
Avg CVSS
7.1
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
6
Critical/High
Risk Level
36/100
low
Severity Distribution
Critical
4High
3Medium
9Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
4Age Distribution
Common Weaknesses (CWE)
1
SQL Injection
5
2
XSS
4
3
Path Traversal
3
4
Malicious File Upload
1
Most Affected Products
1. sscms Siteserver Cms10
2. sscms SSCMS8
3. Sscms Project Sscms1
Recent Vulnerabilities
See more →CVE-2026-7435
CVSS 8.6EPSS 0%high
SSCMS v7.4.0 SQL Injection via stl:sqlContent queryString
Apr 30, 2026🔧 No Patch
CVE-2026-4542
CVSS 5.3EPSS 0%medium
SSCMS layerImage Endpoint LayerImageController.Submit.cs path traversal
Mar 22, 2026🔧 No Patch
CVE-2026-4234
CVSS 5.3EPSS 0%medium
SSCMS DDL SitesAddController.Submit.cs sql injection
Mar 16, 2026🔧 No Patch
CVE-2026-4222
CVSS 5.1EPSS 0%medium
SSCMS download PathUtils.RemoveParentPath path traversal
Mar 16, 2026🔧 No Patch
CVE-2025-52237
CVSS 6.5medium
Aug 5, 2025🔧 No Patch
CVE-2025-45529
CVSS 7.1high
May 27, 2025🔧 No Patch
CVE-2023-43953
CVSS 5.4medium
Oct 3, 2023🔧 No Patch
CVE-2023-2862
CVSS 6.1medium
SiteServer CMS search cross site scripting
May 24, 2023🔧 No Patch
CVE-2022-44299
CVSS 4.9medium
Feb 16, 2023🔧 No Patch
CVE-2022-44298
CVSS 9.8critical
Jan 27, 2023🔧 No Patch
Monitor SSCMS in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.