Known Vulnerabilities for products from Ximdex
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Ximdex".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-12273 json | The /edit URI in the DMS component in Ximdex 4.0 has XSS via the Ciudad or Nombre parameter. | 6.1 - MEDIUM | 2018-06-13 | 2018-08-02 |
| CVE-2018-12272 json | xowl/request.php in Ximdex 4.0 has XSS via the content parameter. | 6.1 - MEDIUM | 2018-06-13 | 2018-08-02 |
| CVE-2018-12047 json | xfind/search in Ximdex 4.0 has XSS via the filter[n][value] parameters for non-negative values of n, as demonstrated by n equ... | 6.1 - MEDIUM | 2018-06-08 | 2018-07-12 |
| CVE-2018-11735 json | index.php?action=createaccount in Ximdex 4.0 has XSS via the sname or fname parameter. | 6.1 - MEDIUM | 2018-06-05 | 2018-07-23 |
Known software with vulnerabilities from Ximdex
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Ximdex | Ximdex | 4.0 |