Vulnerabilities > Brim Project > Brim > 2.0.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-09-15 | CVE-2008-4083 | Cross-Site Scripting vulnerability in Brim-Project Brim 2.0.0 Cross-site scripting (XSS) vulnerability in the Bookmarks plugin in Brim 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the name parameter in an addItemPost action to index.php. | 3.5 |
2008-09-15 | CVE-2008-4082 | SQL Injection vulnerability in Brim-Project Brim 2.0.0 SQL injection vulnerability in the Tasks plugin in Brim 2.0.0, when magic_quotes_gpc is disabled, allows remote authenticated users to execute arbitrary SQL commands via an arbitrary field in a search action to index.php. | 4.6 |