Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2019-7547

Disclosure Date: February 06, 2019 (last updated November 27, 2024)
An issue was discovered in SIDU 6.0. Because the database name is not strictly filtered, the attacker can insert a name containing an XSS Payload, leading to stored XSS.
0
Attacker Value
Unknown

CVE-2019-7546

Disclosure Date: February 06, 2019 (last updated November 27, 2024)
An issue was discovered in SIDU 6.0. The dbs parameter of the conn.php page has a reflected Cross-site Scripting (XSS) vulnerability.
0