VendorsIcms Content Management Systemsicmsall versions
Vulnerabilities

Icms Content Management Systems Icms

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2005-4397
SQL injection vulnerability in RunScript.asp iCMS allows remote attackers to execute arbitrary SQL commands via the Event_ID parameter.
Published 2005-12-20 · Modified
7.5EPSS 0.011
CVE-2005-3574
PHP file inclusion vulnerability in index.php of iCMS allows remote attackers to include arbitrary files via the page parameter.
Published 2005-11-16 · Modified
5.0EPSS 0.015
CVE-2005-4396
Cross-site scripting (XSS) vulnerability in admin/Default.asp in iCMS allows remote attackers to inject arbitrary web script or HTML via the LoginMSG parameter. NOTE: the provenance of this issue is unknown; the details were obtained solely from third party sources.
Published 2005-12-20 · Modified
4.3EPSS 0.009