Vulnerabilities > Adiscon > Loganalyzer > 3.4.3
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-08-08 | CVE-2023-36306 | Cross-site Scripting vulnerability in Adiscon Loganalyzer A Cross Site Scripting (XSS) vulnerability in Adiscon Aiscon LogAnalyzer through 4.1.13 allows a remote attacker to execute arbitrary code via the asktheoracle.php, details.php, index.php, search.php, export.php, reports.php, and statistics.php components. | 6.1 |
2023-06-20 | CVE-2023-34600 | SQL Injection vulnerability in Adiscon Loganalyzer Adiscon LogAnalyzer v4.1.13 and before is vulnerable to SQL Injection. | 9.8 |
2018-12-05 | CVE-2018-19877 | Cross-site Scripting vulnerability in Adiscon Loganalyzer login.php in Adiscon LogAnalyzer before 4.1.7 has XSS via the Login Button Referer field. | 4.3 |
2014-09-11 | CVE-2014-6070 | Cross-Site Scripting vulnerability in Adiscon Loganalyzer Multiple cross-site scripting (XSS) vulnerabilities in Adiscon LogAnalyzer before 3.6.6 allow remote attackers to inject arbitrary web script or HTML via the hostname in (1) index.php or (2) detail.php. | 4.3 |
2012-06-20 | CVE-2012-3790 | Cross-Site Scripting vulnerability in Adiscon Loganalyzer Cross-site scripting (XSS) vulnerability in index.php in Adiscon LogAnalyzer before 3.4.4 and 3.5.x before 3.5.5 allows remote attackers to inject arbitrary web script or HTML via the highlight parameter in a Search action. | 4.3 |