Vulnerabilities > Awffull

DATE CVE VULNERABILITY TITLE RISK
2007-06-20 CVE-2007-3299 Cross-Site Scripting vulnerability in AWFFull Log File Referer Field
Cross-site scripting (XSS) vulnerability in AWFFull before 3.7.4, when AllSearchStr (aka the All Search Terms report) is enabled, allows remote attackers to inject arbitrary web script or HTML via a search string.
network
awffull
4.3
2007-01-26 CVE-2007-0510 Remote Security vulnerability in Awffull 3.7.1
Multiple buffer overflows in (1) graphs.c, (2) output.c, and (3) preserve.c in AWFFull 3.7.1 and earlier have unknown impact and attack vectors.
network
low complexity
awffull
critical
10.0