Vulnerabilities > 53Kf

DATE CVE VULNERABILITY TITLE RISK
2021-10-04 CVE-2020-28119 Cross-site Scripting vulnerability in 53Kf
Cross site scripting vulnerability in 53KF < 2.0.0.2 that allows for arbitrary code to be executed via crafted HTML statement inserted into chat window.
network
53kf CWE-79
4.3
2009-01-22 CVE-2009-0247 Cross-Site Scripting vulnerability in 53Kf web IM 2009 NIL
The server for 53KF Web IM 2009 Home, Professional, and Enterprise editions relies on client-side protection mechanisms against cross-site scripting (XSS), which allows remote attackers to conduct XSS attacks by using a modified client to send a crafted IM message, related to the msg variable.
network
53kf CWE-79
4.3