Vulnerabilities (CVE)

Filtered by vendor Martmbithi Subscribe
Filtered by product Ibanking
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-29412 1 Martmbithi 1 Ibanking 2025-04-01 N/A 4.8 MEDIUM
A cross-site scripting (XSS) vulnerability in the Client Profile Update section of Mart Developers iBanking v2.0.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name parameter.
CVE-2025-29411 1 Martmbithi 1 Ibanking 2025-03-28 N/A 9.8 CRITICAL
An arbitrary file upload vulnerability in the Client Profile Update section of Mart Developers iBanking v2.0.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.