Loading HuntDB...

Version unspecified

OTHER 15 CVEs

Known Vulnerabilities

CVE-2023-4928

SQL Injection in GitHub repository instantsoft/icms2 prior to 2.16.1.

HIGH CVSS 7.2 Published Sep 13, 2023

CVE-2023-4879

Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1.-git.

LOW CVSS 3.5 Published Sep 10, 2023

CVE-2023-4878

Server-Side Request Forgery (SSRF) in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

MEDIUM CVSS 4.3 Published Sep 10, 2023

CVE-2023-4704

External Control of System or Configuration Setting in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

HIGH CVSS 8.8 Published Sep 01, 2023

CVE-2023-4654

Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository instantsoft/icms2 prior to 2.16.1.

LOW CVSS 2.6 Published Aug 31, 2023

CVE-2023-4655

Cross-site Scripting (XSS) - Reflected in GitHub repository instantsoft/icms2 prior to 2.16.1.

MEDIUM CVSS 4.3 Published Aug 31, 2023

CVE-2023-4650

Improper Access Control in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

MEDIUM CVSS 4.7 Published Aug 31, 2023

CVE-2023-4649

Session Fixation in GitHub repository instantsoft/icms2 prior to 2.16.1.

MEDIUM CVSS 4.3 Published Aug 31, 2023

CVE-2023-4651

Server-Side Request Forgery (SSRF) in GitHub repository instantsoft/icms2 prior to 2.16.1.

MEDIUM CVSS 6.4 Published Aug 31, 2023

CVE-2023-4653

Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

MEDIUM CVSS 5.9 Published Aug 31, 2023

CVE-2023-4652

Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

MEDIUM CVSS 6.8 Published Aug 31, 2023

CVE-2023-4381

Unverified Password Change in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

MEDIUM CVSS 4.3 Published Aug 16, 2023

CVE-2023-4189

Cross-site Scripting (XSS) - Reflected in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

MEDIUM CVSS 4.8 Published Aug 05, 2023

CVE-2023-4188

SQL Injection in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

CRITICAL CVSS 9.8 Published Aug 05, 2023

CVE-2023-4187

Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1-git.

LOW CVSS 3.5 Published Aug 05, 2023