Vulnerabilities > Pmachine > Expressionengine > 1.4.1

DATE CVE VULNERABILITY TITLE RISK
2006-01-27 CVE-2006-0461 HTML Injection vulnerability in Pmachine Expressionengine 1.4.1
Cross-site scripting (XSS) vulnerability in core.input.php in ExpressionEngine 1.4.1 allows remote attackers to inject arbitrary web script or HTML via HTTP_REFERER (referer).
network
pmachine
4.3