VYPR

Impresscms

by Impresscms

Source repositories

CVEs (23)

  • CVE-2008-6360Mar 2, 2009
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in the userranks feature in modules/system/admin.php in ImpressCMS 1.0.2 final allows remote attackers to inject arbitrary web script or HTML via the rank_title parameter. NOTE: some of these details are obtained from third party…

  • CVE-2008-5964Jan 23, 2009
    risk 0.00cvss epss 0.02

    Session fixation vulnerability in Social ImpressCMS before 1.1.1 RC1 allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.

  • CVE-2008-3453Aug 4, 2008
    risk 0.00cvss epss 0.01

    Multiple unspecified vulnerabilities in ImpressCMS 1.0 have unknown impact and attack vectors, related to modules/admin.php and "a few files."

Page 2 of 2