Vulnerabilities (CVE)

Filtered by vendor Ximdex Subscribe
Filtered by product Ximdex
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-11735 1 Ximdex 1 Ximdex 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
index.php?action=createaccount in Ximdex 4.0 has XSS via the sname or fname parameter.
CVE-2018-12272 1 Ximdex 1 Ximdex 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
xowl/request.php in Ximdex 4.0 has XSS via the content parameter.
CVE-2018-12273 1 Ximdex 1 Ximdex 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
The /edit URI in the DMS component in Ximdex 4.0 has XSS via the Ciudad or Nombre parameter.
CVE-2018-12047 1 Ximdex 1 Ximdex 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
xfind/search in Ximdex 4.0 has XSS via the filter[n][value] parameters for non-negative values of n, as demonstrated by n equal to 0 through 12.