Vulnerabilities > Icecoder > Icecoder > 8.0

DATE CVE VULNERABILITY TITLE RISK
2022-01-17 CVE-2021-3862 Unspecified vulnerability in Icecoder
icecoder is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
network
low complexity
icecoder
4.8
2021-06-08 CVE-2021-32106 Cross-site Scripting vulnerability in Icecoder 8.0
In ICEcoder 8.0 allows, a reflected XSS vulnerability was identified in the multipe-results.php page due to insufficient sanitization of the _GET['replace'] variable.
network
low complexity
icecoder CWE-79
5.4