MagnusBilling
MagnusSolution · 4 CVEs
CVE-2025-52289
HIGH
A Broken Access Control vulnerability in MagnusBilling v7.8.5.3 allows newly registered users to gain escalated privile…
Jul 31, 2025
CVE-2025-2609
HIGH
MagnusBilling Stored Cross-Site Scripting in Login Logs
Mar 21, 2025
CVE-2025-2610
HIGH
MagnusBilling Stored Cross-Site Scripting in Alarm Module
Mar 21, 2025
CVE-2023-30258
CRITICAL
Command Injection vulnerability in MagnusSolution magnusbilling 6.x and 7.x allows remote attackers to run arbitrary co…
Jun 23, 2023
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-52289 | A Broken Access Control vulnerability in MagnusBilling v7.8.5.3 allows newly registered users to gain escalated privileges by sending a crafted request to /mbi… | HIGH | 0.41% | Jul 31, 2025 |
| CVE-2025-2609 | MagnusBilling Stored Cross-Site Scripting in Login Logs | HIGH | 1.13% | Mar 21, 2025 |
| CVE-2025-2610 | MagnusBilling Stored Cross-Site Scripting in Alarm Module | HIGH | 0.94% | Mar 21, 2025 |
| CVE-2023-30258 | Command Injection vulnerability in MagnusSolution magnusbilling 6.x and 7.x allows remote attackers to run arbitrary commands via unauthenticated HTTP request. | CRITICAL | 94.25% | Jun 23, 2023 |
Showing 1 to 4 of 4 CVEs