Known Vulnerabilities for products from Xrms
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Xrms".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2008-3948 json | SQL injection vulnerability in admin/users/self-2.php in XRMS allows remote attackers to execute arbitrary SQL commands and m... | Not Provided | 2008-09-05 | 2026-04-23 |
| CVE-2008-3664 json | Multiple cross-site scripting (XSS) vulnerabilities in XRMS allow remote attackers to inject arbitrary web script or HTML via... | Not Provided | 2008-09-05 | 2026-04-23 |
| CVE-2008-3400 json | XRMS CRM 1.99.2 allows remote attackers to obtain configuration information via a direct request to tests/info.php, which cal... | Not Provided | 2008-07-31 | 2026-04-23 |
| CVE-2008-3399 json | PHP remote file inclusion vulnerability in activities/workflow-activities.php in XRMS CRM 1.99.2, when register_globals is en... | Not Provided | 2008-07-31 | 2026-04-23 |
| CVE-2008-3398 json | Multiple cross-site scripting (XSS) vulnerabilities in XRMS CRM 1.99.2 allow remote attackers to inject arbitrary web script ... | Not Provided | 2008-07-31 | 2026-04-23 |