Show filters
16 Total Results
Displaying 11-16 of 16
Sort by:
Attacker Value
Unknown
CVE-2010-2272
Disclosure Date: June 15, 2010 (last updated October 04, 2023)
Unspecified vulnerability in iframe_history.html in Dojo 0.4.x before 0.4.4 has unknown impact and remote attack vectors.
0
Attacker Value
Unknown
CVE-2009-3417
Disclosure Date: September 25, 2009 (last updated October 04, 2023)
SQL injection vulnerability in the IDoBlog (com_idoblog) component 1.1 build 30 for Joomla! allows remote attackers to execute arbitrary SQL commands via the userid parameter in a profile action to index.php, a different vector than CVE-2008-2627.
0
Attacker Value
Unknown
CVE-2007-6726
Disclosure Date: April 09, 2009 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Dojo 0.4.1 and 0.4.2, as used in Apache Struts and other products, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving (1) xip_client.html and (2) xip_server.html in src/io/.
0
Attacker Value
Unknown
CVE-2008-6681
Disclosure Date: April 09, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in dijit.Editor in Dojo before 1.1 allows remote attackers to inject arbitrary web script or HTML via XML entities in a TEXTAREA element.
0
Attacker Value
Unknown
CVE-2007-2376
Disclosure Date: April 30, 2007 (last updated October 04, 2023)
The Dojo framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking."
0
Attacker Value
Unknown
CVE-2006-3560
Disclosure Date: July 13, 2006 (last updated October 04, 2023)
SQL injection vulnerability in topics.php in Blue Dojo Graffiti Forums 1.0 allows remote attackers to execute arbitrary SQL commands via the f parameter.
0