Show filters
13 Total Results
Displaying 11-13 of 13
Sort by:
Attacker Value
Unknown
CVE-2007-1182
Disclosure Date: March 02, 2007 (last updated October 04, 2023)
WebAPP before 0.9.9.5 allows remote Guest users to edit a Guest profile, which has unknown impact.
0
Attacker Value
Unknown
CVE-2006-1427
Disclosure Date: March 28, 2006 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in WebAPP 0.9.9.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) id, (3) num, (4) board, (5) cat, (6) real, (7) viewcat, (8) img, or (9) curcatname parameter in cgi-bin/index.cgi, or (10) vsSD parameter in /mods/calendar/index.cgi.
0
Attacker Value
Unknown
CVE-2005-1628
Disclosure Date: May 17, 2005 (last updated February 22, 2025)
apage.cgi in WebAPP 0.9.9.2.1, and possibly earlier versions, allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.
0