Vulnerabilities (CVE)

Filtered by vendor Ilch Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-1944 1 Ilch 1 Ilch Cms 2018-10-09 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Ilch CMS 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the text parameter to index.php/guestbook/index/newentry.
CVE-2015-2083 1 Ilch 1 Cms 2016-11-30 6.8 MEDIUM N/A
Cross-site request forgery (CSRF) vulnerability in Ilch CMS allows remote attackers to hijack the authentication of administrators for requests that add a value to a profile field via a profilefields request to admin.php.