Vulnerabilities (CVE)

Filtered by vendor Ixprim Subscribe
Filtered by product Ixprim Cms
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-6755 1 Ixprim 1 Ixprim Cms 2025-04-09 5.0 MEDIUM N/A
Ixprim 1.2 allows remote attackers to obtain sensitive information via a direct request for kernel/plugins/fckeditor2/ixprim_api.php, which reveals the path in an error message.
CVE-2006-6754 1 Ixprim 1 Ixprim Cms 2025-04-09 6.5 MEDIUM N/A
Multiple SQL injection vulnerabilities in Ixprim 1.2 allow remote attackers to execute arbitrary SQL commands via the story_id parameter to ixm_ixpnews.php, and unspecified other vectors.
CVE-2006-6756 1 Ixprim 1 Ixprim Cms 2025-04-09 5.1 MEDIUM N/A
The code function in install.fct.php in Ixprim 1.2 produces a guessable value of the confidential IXP_CODE in mainfile.php, which might allow remote attackers to gain access to the administration panel via a brute force attack.