Show filters
13 Total Results
Displaying 11-13 of 13
Sort by:
Attacker Value
Unknown
CVE-2006-3259
Disclosure Date: June 27, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in e107 0.7.5 allow remote attackers to inject arbitrary web script or HTML via the (1) ep parameter to search.php and the (2) subject parameter in comment.php (aka the Subject field when posting a comment).
0
Attacker Value
Unknown
CVE-2006-2416
Disclosure Date: May 16, 2006 (last updated October 04, 2023)
SQL injection vulnerability in class2.php in e107 0.7.2 and earlier allows remote attackers to execute arbitrary SQL commands via a cookie as defined in $pref['cookie_name'].
0
Attacker Value
Unknown
CVE-2004-2028
Disclosure Date: May 21, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in stats.php in e107 allows remote attackers to inject arbitrary web script or HTML via the referer parameter to log.php.
0