Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
icegram icegram engage vulnerabilities and exploits
(subscribe to this query)
5.4
CVSSv3
CVE-2021-36832
WordPress Popups, Welcome Bar, Optins and Lead Generation Plugin – Icegram (versions <= 2.0.2) vulnerable at "Headline" (&message_data[16][headline]) input.
Icegram Icegram Engage
5.4
CVSSv3
CVE-2023-51532
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building allows Stored XSS.This issue affects Icegram Engage –...
Icegram Icegram Engage
6.1
CVSSv3
CVE-2023-2398
The Icegram Engage WordPress plugin prior to 3.1.12 does not escape a parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin
Icegram Icegram Engage
6.5
CVSSv3
CVE-2016-10962
The icegram plugin prior to 1.9.19 for WordPress has CSRF via the wp-admin/edit.php option_name parameter.
Icegram Icegram Engage
6.1
CVSSv3
CVE-2016-10963
The icegram plugin prior to 1.9.19 for WordPress has XSS.
Icegram Icegram Engage
8.8
CVSSv3
CVE-2023-52119
Cross-Site Request Forgery (CSRF) vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building.This issue affects Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building:...
Icegram Icegram Engage
5.4
CVSSv3
CVE-2019-15830
The icegram plugin prior to 1.10.29 for WordPress has ig_cat_list XSS.
Icegram Icegram Engage
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2018-25103
CVE-2024-36279
CVE-2024-38457
elevation of privilege
CVE-2024-27801
CVE-2024-30103
NULL pointer dereference
CVE-2024-6057
XML injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started