VYPR

Portal Server

by Intrexx

CVEs (4)

  • CVE-2025-26816MedMar 19, 2025
    risk 0.42cvss 6.5epss 0.00

    A vulnerability in Intrexx Portal Server 12.0.2 and earlier which was classified as problematic potentially allows users with particular permissions under certain conditions to see potentially sensitive data from a different user context.

  • CVE-2025-30092MedMar 19, 2025
    risk 0.40cvss 6.1epss 0.00

    Intrexx Portal Server 12.x <= 12.0.2 and 11.x <= 11.9.2 allows XSS in multiple Velocity scripts.

  • CVE-2024-55554MedDec 16, 2024
    risk 0.35cvss 5.4epss 0.00

    Intrexx Portal Server before 12.0.2 allows XSS via a user-defined portlet.

  • CVE-2025-47201MedMay 2, 2025
    risk 0.29cvss 4.4epss 0.00

    In Intrexx Portal Server before 12.0.4, multiple Velocity-Scripts are susceptible to the execution of unrequested JavaScript code in HTML, aka XSS.