Vulnerabilities (CVE)

Filtered by vendor Icecoder Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-34026 1 Icecoder 1 Icecoder 2023-12-10 N/A 7.5 HIGH
ICEcoder v8.1 allows attackers to execute a directory traversal.
CVE-2021-3862 1 Icecoder 1 Icecoder 2023-12-10 3.5 LOW 4.8 MEDIUM
icecoder is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-32106 1 Icecoder 1 Icecoder 2023-12-10 3.5 LOW 5.4 MEDIUM
In ICEcoder 8.0 allows, a reflected XSS vulnerability was identified in the multipe-results.php page due to insufficient sanitization of the _GET['replace'] variable. As a result, arbitrary Javascript code can get executed.