Loading product vulnerabilities…
Total
4
Critical
0
High
0
Medium
0
CISA KEV
0
The /edit URI in the DMS component in Ximdex 4.0 has XSS via the Ciudad or Nombre parameter.
xowl/request.php in Ximdex 4.0 has XSS via the content parameter.
xfind/search in Ximdex 4.0 has XSS via the filter[n][value] parameters for non-negative values of n, as demonstrated by n equal to 0 through 12.
index.php?action=createaccount in Ximdex 4.0 has XSS via the sname or fname parameter.