Vulnerabilities > PHP Invoice

DATE CVE VULNERABILITY TITLE RISK
2006-10-03 CVE-2006-5110 Cross-Site Scripting vulnerability in PHP Invoice PHP Invoice 2.2
Cross-site scripting (XSS) vulnerability in home.php in PHP Invoice 2.2 allows remote attackers to inject arbitrary web script or HTML via the msg parameter, a different vector than CVE-2006-5074.
network
php-invoice
6.8
2006-09-29 CVE-2006-5074 Cross-Site Scripting vulnerability in PHP Invoice PHP Invoice 2.2
Cross-site scripting (XSS) vulnerability in home.php in PHP Invoice 2.2 allows remote attackers to inject arbitrary web script or HTML via the alert parameter.
network
high complexity
php-invoice
5.1