VYPR

Ximdex

by Ximdex

Source repositories

CVEs (4)

  • CVE-2018-12273MedJun 13, 2018
    risk 0.40cvss 6.1epss 0.01

    The /edit URI in the DMS component in Ximdex 4.0 has XSS via the Ciudad or Nombre parameter.

  • CVE-2018-12272MedJun 13, 2018
    risk 0.40cvss 6.1epss 0.01

    xowl/request.php in Ximdex 4.0 has XSS via the content parameter.

  • CVE-2018-12047MedJun 8, 2018
    risk 0.40cvss 6.1epss 0.01

    xfind/search in Ximdex 4.0 has XSS via the filter[n][value] parameters for non-negative values of n, as demonstrated by n equal to 0 through 12.

  • CVE-2018-11735MedJun 5, 2018
    risk 0.40cvss 6.1epss 0.01

    index.php?action=createaccount in Ximdex 4.0 has XSS via the sname or fname parameter.