Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2014-9919

Disclosure Date: May 15, 2019 (last updated November 27, 2024)
An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the fullname parameter to signup.php.
0
Attacker Value
Unknown

CVE-2014-9918

Disclosure Date: May 15, 2019 (last updated November 27, 2024)
An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the user_id parameter to signup.php.
0
Attacker Value
Unknown

CVE-2014-9917

Disclosure Date: May 15, 2019 (last updated November 27, 2024)
An issue was discovered in Bilboplanet 2.0. There is a stored XSS vulnerability when adding a tag via the user/?page=tribes tags parameter.
0
Attacker Value
Unknown

CVE-2014-9916

Disclosure Date: February 24, 2017 (last updated November 26, 2024)
Multiple cross-site scripting (XSS) vulnerabilities in Bilboplanet 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) tribe_name or (2) tags parameter in a tribes page request to user/ or the (3) user_id or (4) fullname parameter to signup.php.