Vulnerabilities > Metinfo > Low

DATE CVE VULNERABILITY TITLE RISK
2021-12-22 CVE-2020-20600 Cross-site Scripting vulnerability in Metinfo 7.0.0
MetInfo 7.0 beta contains a stored cross-site scripting (XSS) vulnerability in the $name parameter of admin/?n=column&c=index&a=doAddColumn.
network
metinfo CWE-79
3.5
2018-10-16 CVE-2018-18374 Cross-site Scripting vulnerability in Metinfo 6.1.2
XSS exists in the MetInfo 6.1.2 admin/index.php page via the anyid parameter.
network
metinfo CWE-79
3.5
2018-07-20 CVE-2018-14419 Cross-site Scripting vulnerability in Metinfo 6.0.0
MetInfo 6.0.0 allows XSS via a modified name of the navigation bar on the home page.
network
metinfo CWE-79
3.5
2017-03-27 CVE-2017-6878 Cross-site Scripting vulnerability in Metinfo 5.3.15
Cross-site scripting (XSS) vulnerability in MetInfo 5.3.15 allows remote authenticated users to inject arbitrary web script or HTML via the name_2 parameter to admin/column/delete.php.
network
metinfo CWE-79
3.5