Metacrm Metasoft Metacrm

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Metasoft Metacrm.

By the Year

In 2026 there have been 2 vulnerabilities in Metasoft Metacrm with an average score of 6.8 out of ten.

Year Vulnerabilities Average Score
2026 2 6.80

It may take a day or so for new Metacrm vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Metasoft Metacrm Security Vulnerabilities

Remote Unrestricted Upload in Metasoft MetaCRM 6.4.0 via upload.jsp
CVE-2026-10205 6.3 - Medium - June 01, 2026

A security vulnerability has been detected in Metasoft MetaCRM 6.4.0. The impacted element is an unknown function of the file develop/systparam/softlogo/upload.jsp. Such manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Unrestricted File Upload

Metasoft MetaCRM <=6.4.0 beta06 Unrestricted File Upload via upload3.jsp
CVE-2026-8758 7.3 - High - May 17, 2026

A vulnerability was determined in Metasoft MetaCRM up to 6.4.0 Beta06. This impacts an unknown function of the file /common/jsp/upload3.jsp. Executing a manipulation of the argument File can lead to unrestricted upload. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

Unrestricted File Upload

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Metasoft Metacrm or by Metasoft? Click the Watch button to subscribe.

Metasoft
Vendor

subscribe