Vulnerabilities > Codiad

DATE CVE VULNERABILITY TITLE RISK
2015-01-08 CVE-2014-9582 Cross-site Scripting vulnerability in Codiad 2.4.3
Cross-site scripting (XSS) vulnerability in components/filemanager/dialog.php in Codiad 2.4.3 allows remote attackers to inject arbitrary web script or HTML via the short_name parameter in a rename action.
network
codiad CWE-79
4.3
2015-01-08 CVE-2014-9581 Path Traversal vulnerability in Codiad 2.4.3
Directory traversal vulnerability in components/filemanager/download.php in Codiad 2.4.3 allows remote attackers to read arbitrary files via a ..
network
low complexity
codiad CWE-22
5.0
2014-01-03 CVE-2013-7257 Cross-Site Scripting vulnerability in Codiad 2.0.7
Cross-site scripting (XSS) vulnerability in Codiad 2.0.7 allows remote attackers to inject arbitrary web script or HTML via the Project Name field.
network
codiad CWE-79
4.3