Vulnerabilities > Miwisoft

DATE CVE VULNERABILITY TITLE RISK
2019-11-22 CVE-2013-6879 Information Exposure Through an Error Message vulnerability in Miwisoft Mijosearch
The Mijosoft MijoSearch component 2.0.1 and earlier for Joomla! allows remote attackers to obtain sensitive information via a request to component/mijosearch/search, which reveals the installation path in an error message.
network
low complexity
miwisoft CWE-209
5.0
2019-11-22 CVE-2013-6878 Cross-site Scripting vulnerability in Miwisoft Mijosearch
Cross-site scripting (XSS) vulnerability in the Mijosoft MijoSearch component 2.0.4 and earlier for Joomla! allows remote attackers to inject arbitrary web script or HTML via the query parameter to component/mijosearch/search.
network
miwisoft CWE-79
4.3