Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown

CVE-2015-5497

Disclosure Date: August 18, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the Web Links module 6.x-2.x before 6.x-2.6 and 7.x-1.x before 7.x-1.0 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2009-1624

Disclosure Date: May 12, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in index.php in Dew-NewPHPLinks 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the show parameter.
0
Attacker Value
Unknown

CVE-2009-1623

Disclosure Date: May 12, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in Dew-NewPHPLinks 2.0 allows remote attackers to inject arbitrary web script or HTML via the PID parameter.
0
Attacker Value
Unknown

CVE-2008-3329

Disclosure Date: July 27, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Links before 2.1, when "only proxies" is enabled, has unknown impact and attack vectors related to providing "URLs to external programs."
0
Attacker Value
Unknown

CVE-2007-5978

Disclosure Date: November 15, 2007 (last updated October 04, 2023)
SQL injection vulnerability in brokenlink.php in the mylinks module for XOOPS allows remote attackers to execute arbitrary SQL commands via the lid parameter.
0
Attacker Value
Unknown

CVE-2006-2848

Disclosure Date: June 06, 2006 (last updated October 04, 2023)
links.asp in aspWebLinks 2.0 allows remote attackers to change the administrative password, possibly via a direct request with a modified txtAdministrativePassword field.
0
Attacker Value
Unknown

CVE-2006-2847

Disclosure Date: June 06, 2006 (last updated October 04, 2023)
SQL injection vulnerability in links.asp in aspWebLinks 2.0 allows remote attackers to execute arbitrary SQL commands via the linkID parameter.
0
Attacker Value
Unknown

CVE-2005-3697

Disclosure Date: November 21, 2005 (last updated February 22, 2025)
Unspecified vulnerability in the administration interface in Uresk Links 2.0 Lite allows remote attackers to bypass authentication via unspecified vectors in index.php.
0
Attacker Value
Unknown

CVE-2005-1492

Disclosure Date: May 11, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in user.cgi in Gossamer Threads Links SQL 2.x and 3.0 allows remote attackers to inject arbitrary web script or HTML via the url parameter.
0
Attacker Value
Unknown

CVE-2002-2060

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Buffer overflow in Links 2.0 pre4 allows remote attackers to crash client browsers and possibly execute arbitrary code via gamma tables in large 16-bit PNG images.
0