Vulnerabilities > Mark Girling

DATE CVE VULNERABILITY TITLE RISK
2009-04-21 CVE-2008-6738 Improper Authentication vulnerability in Mark Girling Myshoutpro 1.2
MyShoutPro 1.2 allows remote attackers to bypass authentication and gain administrative access by setting the admin_access cookie to 1.
network
low complexity
mark-girling CWE-287
7.5
2009-04-21 CVE-2006-7238 Cross-Site Scripting vulnerability in Mark Girling Myshoutpro
Cross-site scripting (XSS) vulnerability in MyShoutPro before 1.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
4.3