Unrated severityNVD Advisory· Published Feb 21, 2011· Updated Apr 29, 2026
CVE-2011-1055
CVE-2011-1055
Description
SQL injection vulnerability in api/ice_media.cfc in Lingxia I.C.E CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the session.user_id parameter to media.cfm.
Affected products
1- cpe:2.3:a:lingxia273:lingxia_i.c.e_cms:1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.exploit-db.com/exploits/16171nvdExploit
- www.securityfocus.com/bid/46373nvdExploit
- secunia.com/advisories/43327nvdVendor Advisory
- www.stratsec.net/Research/Advisories/Lingxia-273-I-C-E-CMS-Blind-SQL-Injection-%28SS-2011nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/65462nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/65477nvd
News mentions
0No linked articles in our index yet.