Vulnerabilities > Fuzzylime Forum

DATE CVE VULNERABILITY TITLE RISK
2007-06-19 CVE-2007-3267 Cross-Site Scripting vulnerability in Fuzzylime forum
Cross-site scripting (XSS) vulnerability in low.php in Fuzzylime Forum 1.01b and earlier allows remote attackers to inject arbitrary web script or HTML via the fromaction parameter in a log action, a different vector than CVE-2007-3235.
network
fuzzylime-forum
4.3
2007-06-15 CVE-2007-3235 Cross-Site Scripting vulnerability in Fuzzylime Forum Fuzzylime Forum 1.0
Cross-site scripting (XSS) vulnerability in low.php in Fuzzylime Forum 1.0 allows remote attackers to inject arbitrary web script or HTML via the topic parameter.
network
fuzzylime-forum
4.3
2007-06-15 CVE-2007-3234 SQL Injection vulnerability in Fuzzylime Forum Fuzzylime Forum 1.0
SQL injection vulnerability in low.php in Fuzzylime Forum 1.0 allows remote attackers to execute arbitrary SQL commands via the topic parameter.
network
low complexity
fuzzylime-forum
7.5