Vulnerabilities > Metinfo > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-12-22 | CVE-2020-20600 | Cross-site Scripting vulnerability in Metinfo 7.0.0 MetInfo 7.0 beta contains a stored cross-site scripting (XSS) vulnerability in the $name parameter of admin/?n=column&c=index&a=doAddColumn. | 3.5 |
2018-10-16 | CVE-2018-18374 | Cross-site Scripting vulnerability in Metinfo 6.1.2 XSS exists in the MetInfo 6.1.2 admin/index.php page via the anyid parameter. | 3.5 |
2018-07-20 | CVE-2018-14419 | Cross-site Scripting vulnerability in Metinfo 6.0.0 MetInfo 6.0.0 allows XSS via a modified name of the navigation bar on the home page. | 3.5 |
2017-03-27 | CVE-2017-6878 | Cross-site Scripting vulnerability in Metinfo 5.3.15 Cross-site scripting (XSS) vulnerability in MetInfo 5.3.15 allows remote authenticated users to inject arbitrary web script or HTML via the name_2 parameter to admin/column/delete.php. | 3.5 |