Vulnerabilities > Thimpress

DATE CVE VULNERABILITY TITLE RISK
2019-01-09 CVE-2018-16174 Open Redirect vulnerability in Thimpress Learnpress
Open redirect vulnerability in LearnPress prior to version 3.1.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
network
low complexity
thimpress CWE-601
6.1
2019-01-09 CVE-2018-16173 Cross-site Scripting vulnerability in Thimpress Learnpress
Cross-site scripting vulnerability in LearnPress prior to version 3.1.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
low complexity
thimpress CWE-79
6.1