Show filters
57 Total Results
Displaying 51-57 of 57
Sort by:
Attacker Value
Unknown
CVE-2017-11718
Disclosure Date: July 28, 2017 (last updated November 26, 2024)
There is URL Redirector Abuse in MetInfo through 5.3.17 via the gourl parameter to member/login.php.
0
Attacker Value
Unknown
CVE-2017-11716
Disclosure Date: July 28, 2017 (last updated November 26, 2024)
MetInfo through 5.3.17 allows stored XSS via HTML Edit Mode.
0
Attacker Value
Unknown
CVE-2017-11500
Disclosure Date: July 20, 2017 (last updated November 26, 2024)
A directory traversal vulnerability exists in MetInfo 5.3.17. A remote attacker can use ..\ to delete any .zip file via the filenames parameter to /admin/system/database/filedown.php.
0
Attacker Value
Unknown
CVE-2017-9764
Disclosure Date: July 19, 2017 (last updated November 26, 2024)
Cross-site scripting (XSS) vulnerability in MetInfo 5.3.17 allows remote attackers to inject arbitrary web script or HTML via the Client-IP or X-Forwarded-For HTTP header to /include/stat/stat.php in a para action.
0
Attacker Value
Unknown
CVE-2017-11347
Disclosure Date: July 17, 2017 (last updated November 26, 2024)
Authenticated Code Execution Vulnerability in MetInfo 5.3.17 allows a remote authenticated attacker to generate a PHP script with the content of a malicious image, related to admin/include/common.inc.php and admin/app/physical/physical.php.
0
Attacker Value
Unknown
CVE-2017-6878
Disclosure Date: March 27, 2017 (last updated November 26, 2024)
Cross-site scripting (XSS) vulnerability in MetInfo 5.3.15 allows remote authenticated users to inject arbitrary web script or HTML via the name_2 parameter to admin/column/delete.php.
0
Attacker Value
Unknown
CVE-2010-4976
Disclosure Date: November 01, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in search/search.php in MetInfo 3.0 allows remote attackers to inject arbitrary web script or HTML via the searchword parameter (aka Search Box field). NOTE: some of these details are obtained from third party information.
0