Vulnerabilities > Abledesign

DATE CVE VULNERABILITY TITLE RISK
2007-08-31 CVE-2007-4624 HTML Injection vulnerability in Abledesign Dynamic Picture Frame 1.0
Cross-site scripting (XSS) vulnerability in pframe.php in AbleDesign Dynamic Picture Frame 1.00 allows remote attackers to inject arbitrary web script or HTML via the img_url parameter.
network
abledesign
4.3
2007-02-21 CVE-2007-1050 Cross-Site Scripting vulnerability in Abledesign Mycalendar
Multiple cross-site scripting (XSS) vulnerabilities in index.php in AbleDesign MyCalendar allow remote attackers to inject arbitrary web script or HTML via (1) the go parameter, (2) the keyword parameter in the search menu (go=search), or (3) the username or (4) the password in a go=Login action.
network
abledesign CWE-79
4.3
2005-12-21 CVE-2005-4435 Cross-Site Scripting vulnerability in Abledesign D-Man 3.0
Cross-site scripting (XSS) vulnerability in index.php AbleDesign D-Man 3.x allows remote attackers to inject arbitrary web script or HTML via the title parameter.
network
abledesign
4.3
2005-12-21 CVE-2005-4434 Cross-Site Scripting vulnerability in Abledesign 2.0
Cross-site scripting (XSS) vulnerability in AbleDesign ReSearch 2.x allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
network
abledesign
4.3