Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2013-4796

Disclosure Date: December 27, 2019 (last updated November 27, 2024)
ReviewBoard 1.6.17 allows code execution by attaching PHP scripts to review request
Attacker Value
Unknown

CVE-2013-4411

Disclosure Date: December 03, 2019 (last updated November 27, 2024)
Review Board: URL processing gives unauthorized users access to review lists
Attacker Value
Unknown

CVE-2013-4410

Disclosure Date: December 02, 2019 (last updated November 27, 2024)
ReviewBoard: has an access-control problem in REST API
Attacker Value
Unknown

CVE-2014-3994

Disclosure Date: June 16, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in util/templatetags/djblets_js.py in Djblets before 0.7.30 and 0.8.x before 0.8.3 for Django, as used in Review Board, allows remote attackers to inject arbitrary web script or HTML via a JSON object, as demonstrated by the name field when changing a user name.
0