Show filters
19 Total Results
Displaying 11-19 of 19
Sort by:
Attacker Value
Unknown

CVE-2006-7043

Disclosure Date: February 24, 2007 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Chipmunk Blogger allow remote authenticated users to inject arbitrary web script or HTML via script tags in (1) posts and (2) profile names; and (3) a javascript URI in a URL argument in the photo gallery.
0
Attacker Value
Unknown

CVE-2006-2757

Disclosure Date: June 02, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Chipmunk guestbook allows remote attackers to inject arbitrary web script or HTML via the (1) start parameter in (a) index.php; (2) forumID parameter in index.php, (b) newtopic.php, and (c) reply.php; and (3) ID parameter to (d) edit.php.
0
Attacker Value
Unknown

CVE-2006-1683

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
SQL injection vulnerability in admin/login.php in Chipmunk Guestbook allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the User name.
0
Attacker Value
Unknown

CVE-2006-0069

Disclosure Date: January 03, 2006 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in addentry.php in Chipmunk Guestbook 1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the homepage parameter.
0
Attacker Value
Unknown

CVE-2005-3516

Disclosure Date: November 06, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in recommend.php in Chipmunk Directory script allows remote attackers to inject arbitrary web script or HTML via the entryID parameter.
0
Attacker Value
Unknown

CVE-2005-3517

Disclosure Date: November 06, 2005 (last updated February 22, 2025)
Chipmunk Scripts Guestbook allows remote attackers to obtain the installation path of the script via a URL that causes an error message to be displayed, such as a URL that contains a single quote (') in the start parameter of index.php.
0
Attacker Value
Unknown

CVE-2005-3514

Disclosure Date: November 06, 2005 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in Chipmunk Forum script allow remote attackers to inject arbitrary web script or HTML via the forumID parameter to (1) newtopic.php, (2) quote.php, (3) index.php, and (4) reply.php.
0
Attacker Value
Unknown

CVE-2005-3515

Disclosure Date: November 06, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in recommend.php in Chipmunk Topsites script allows remote attackers to inject arbitrary web script or HTML via the ID parameter.
0
Attacker Value
Unknown

CVE-2005-0368

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in CMScore allow remote attackers to execute arbitrary SQL commands via the (1) EntryID or (2) searchterm parameter to index.php, or (3) username parameter to authenticate.php.
0