Itechscripts Proman Xpress vulnerabilities
2 known vulnerabilities affecting itechscripts/proman_xpress.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2012-4265P3HIGHCVSS 7.5PoCv5.0.12012-08-13
CVE-2012-4265 [HIGH] CWE-89 CVE-2012-4265: SQL injection vulnerability in category_edit.php in Proman Xpress 5.0.1 allows remote attackers to e
SQL injection vulnerability in category_edit.php in Proman Xpress 5.0.1 allows remote attackers to execute arbitrary SQL commands via the cid parameter.
nvd
CVE-2012-4266P4MEDIUMCVSS 4.3PoCv5.0.12012-08-13
CVE-2012-4266 [MEDIUM] CWE-79 CVE-2012-4266: Cross-site scripting (XSS) vulnerability in client_details.php in Proman Xpress 5.0.1 allows remote
Cross-site scripting (XSS) vulnerability in client_details.php in Proman Xpress 5.0.1 allows remote attackers to inject arbitrary web script or HTML via the cl_comments parameter. NOTE: some of these details are obtained from third party information.
nvd