Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2010-1713

Disclosure Date: May 04, 2010 (last updated October 04, 2023)
SQL injection vulnerability in modules.php in PostNuke 0.764 allows remote attackers to execute arbitrary SQL commands via the sid parameter in a News article modload action.
0
Attacker Value
Unknown

CVE-2007-0384

Disclosure Date: January 19, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in preview in the reviews section in PostNuke 0.764 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-0386

Disclosure Date: January 19, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the rating section in PostNuke 0.764 has unknown impact and attack vectors, related to "an interesting bug."
0
Attacker Value
Unknown

CVE-2007-0385

Disclosure Date: January 19, 2007 (last updated October 04, 2023)
The faq section in PostNuke 0.764 allows remote attackers to obtain sensitive information (the full path) via "unvalidated output" in FAQ/index.php, possibly involving an undefined id_cat variable.
0