Vulnerabilities > Jupiter CMS
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2006-04-11 | CVE-2006-1680 | Remote Security vulnerability in Jupiter CMS Jupiter CMS 1.1.5 Jupiter CMS 1.1.5, when display_errors is enabled, allows remote attackers to obtain the full server path via a direct request to modules/online.php. | 2.6 |
2006-04-11 | CVE-2006-1679 | Cross-Site Scripting vulnerability in Jupiter CMS Jupiter CMS 1.1.5 Cross-site scripting (XSS) vulnerability in modules/online.php in Jupiter CMS 1.1.5 allows remote attackers to inject arbitrary web script or HTML via the layout parameter to index.php. network jupiter-cms | 4.3 |
2006-03-14 | CVE-2006-1223 | HTML Injection vulnerability in Jupiter CMS Jupiter CMS 1.1.4 Cross-site scripting (XSS) vulnerability in Jupiter Content Manager 1.1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a Javascript URI in the image BBcode tag. network jupiter-cms | 4.3 |