Vulnerabilities > Abledesign
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2007-08-31 | CVE-2007-4624 | HTML Injection vulnerability in Abledesign Dynamic Picture Frame 1.0 Cross-site scripting (XSS) vulnerability in pframe.php in AbleDesign Dynamic Picture Frame 1.00 allows remote attackers to inject arbitrary web script or HTML via the img_url parameter. network abledesign | 4.3 |
2007-02-21 | CVE-2007-1050 | Cross-Site Scripting vulnerability in Abledesign Mycalendar Multiple cross-site scripting (XSS) vulnerabilities in index.php in AbleDesign MyCalendar allow remote attackers to inject arbitrary web script or HTML via (1) the go parameter, (2) the keyword parameter in the search menu (go=search), or (3) the username or (4) the password in a go=Login action. | 4.3 |
2005-12-21 | CVE-2005-4435 | Cross-Site Scripting vulnerability in Abledesign D-Man 3.0 Cross-site scripting (XSS) vulnerability in index.php AbleDesign D-Man 3.x allows remote attackers to inject arbitrary web script or HTML via the title parameter. network abledesign | 4.3 |
2005-12-21 | CVE-2005-4434 | Cross-Site Scripting vulnerability in Abledesign 2.0 Cross-site scripting (XSS) vulnerability in AbleDesign ReSearch 2.x allows remote attackers to inject arbitrary web script or HTML via unknown vectors. network abledesign | 4.3 |