Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2007-3242
Disclosure Date: June 15, 2007 (last updated October 04, 2023)
The Menu Manager Mod for (1) web-app.net WebAPP (aka WebAPP NE) 0.9.9.3.3 through 0.9.9.8, and (2) web-app.org WebAPP before 0.9.9.6, allows remote authenticated users to execute arbitrary commands via shell metacharacters in the titles of items in a personal menu.
0
Attacker Value
Unknown
CVE-2007-1828
Disclosure Date: April 03, 2007 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in web-app.org WebAPP before 0.9.9.6 allow remote authenticated users to inject arbitrary web script or HTML via (1) the QUERY_STRING corresponding to drop downs or (2) various forms.
0
Attacker Value
Unknown
CVE-2007-1827
Disclosure Date: April 03, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in form input validation in web-app.org WebAPP before 0.9.9.6 allow remote authenticated users to corrupt data files, gain access to private files, and execute arbitrary code via "certain characters."
0
Attacker Value
Unknown
CVE-2007-1489
Disclosure Date: March 16, 2007 (last updated October 04, 2023)
Unspecified vulnerability in web-app.org Web Automated Perl Portal (WebAPP) 0.9.9.4 to 0.9.9.6 allows remote attackers to obtain admin access by modifying cookies and performing "certain consecutive actions," possibly due to a cross-site request forgery (CSRF) vulnerability.
0
Attacker Value
Unknown
CVE-2007-1259
Disclosure Date: March 03, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in WebAPP before 0.9.9.6 have unknown impact and attack vectors.
0