Vulnerabilities > Awstats > Low

DATE CVE VULNERABILITY TITLE RISK
2006-07-21 CVE-2006-3681 Unspecified vulnerability in Awstats
Multiple cross-site scripting (XSS) vulnerabilities in awstats.pl in AWStats 6.5 build 1.857 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) refererpagesfilter, (2) refererpagesfilterex, (3) urlfilterex, (4) urlfilter, (5) hostfilter, or (6) hostfilterex parameters, a different set of vectors than CVE-2006-1945.
network
high complexity
awstats
2.6
2006-04-20 CVE-2006-1945 Cross-Site Scripting vulnerability in AWStats AWstats.PL
Cross-site scripting (XSS) vulnerability in awstats.pl in AWStats 6.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the config parameter.
network
high complexity
awstats
2.6