Filtered by vendor Icecoder Subscriptions
Filtered by product Icecoder Subscriptions
Total 6 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-32106 1 Icecoder 1 Icecoder 2024-08-03 5.4 Medium
In ICEcoder 8.0 allows, a reflected XSS vulnerability was identified in the multipe-results.php page due to insufficient sanitization of the _GET['replace'] variable. As a result, arbitrary Javascript code can get executed.
CVE-2021-3862 1 Icecoder 1 Icecoder 2024-08-03 4.8 Medium
icecoder is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-34026 1 Icecoder 1 Icecoder 2024-08-03 7.5 High
ICEcoder v8.1 allows attackers to execute a directory traversal.
CVE-2024-41374 1 Icecoder 1 Icecoder 2024-08-02 6.1 Medium
ICEcoder 8.1 is vulnerable to Cross Site Scripting (XSS) via lib/settings-screen.php
CVE-2024-41375 1 Icecoder 1 Icecoder 2024-08-02 6.1 Medium
ICEcoder 8.1 is vulnerable to Cross Site Scripting (XSS) via lib/terminal-xhr.php
CVE-2024-41373 1 Icecoder 1 Icecoder 2024-08-02 6.3 Medium
ICEcoder 8.1 contains a Path Traversal vulnerability via lib/backup-versions-preview-loader.php.