Vulnerabilities (CVE)

Filtered by CWE-837
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-6759 1 Thecosy 1 Icecms 2024-05-17 5.0 MEDIUM 7.5 HIGH
A vulnerability classified as problematic has been found in Thecosy IceCMS 2.0.1. This affects an unknown part of the file /WebResource/resource of the component Love Handler. The manipulation leads to improper enforcement of a single, unique action. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-247887.
CVE-2023-6438 1 Thecosy 1 Icecms 2024-05-17 4.0 MEDIUM 5.3 MEDIUM
A vulnerability classified as problematic has been found in Thecosy IceCMS 2.0.1. Affected is an unknown function of the file /WebArticle/articles/ of the component Like Handler. The manipulation leads to improper enforcement of a single, unique action. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-246438 is the identifier assigned to this vulnerability.