Vulnerabilities > Poplar Gedcom Viewer

DATE CVE VULNERABILITY TITLE RISK
2008-04-15 CVE-2008-1787 Cross-Site Scripting vulnerability in Poplar Gedcom Viewer Poplar Gedcom Viewer 2.0
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Poplar Gedcom Viewer 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) text and (2) ul parameters.
4.3
2007-01-18 CVE-2007-0307 Remote File Include vulnerability in Poplar Gedcom Viewer Poplar Gedcom Viewer 1.2.2
PHP remote file inclusion vulnerability in include/common.php in Poplar Gedcom Viewer 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the env[rootPath] parameter.
network
low complexity
poplar-gedcom-viewer
7.5