Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2022-45543

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
Cross site scripting (XSS) vulnerability in DiscuzX 3.4 allows attackers to execute arbitrary code via the datetline, title, tpp, or username parameters via the audit search.
Attacker Value
Unknown

CVE-2018-5376

Disclosure Date: January 12, 2018 (last updated November 26, 2024)
Discuz! DiscuzX X3.4 has XSS via the include\spacecp\spacecp_upload.php op parameter.