Vulnerabilities > E107 > E107 > 0.603

DATE CVE VULNERABILITY TITLE RISK
2004-05-21 CVE-2004-2028 HTML Injection vulnerability in e107 Website System
Cross-site scripting (XSS) vulnerability in stats.php in e107 allows remote attackers to inject arbitrary web script or HTML via the referer parameter to log.php.
network
e107
4.3
2003-10-29 CVE-2003-1191 Denial of Service vulnerability in E107 0.545/0.603
chatbox.php in e107 0.554 and 0.603 allows remote attackers to cause a denial of service (pages fail to load) via HTML in the Name field, which prevents the main.php form from being loaded.
network
low complexity
e107
5.0