Vulnerabilities > Qbnz

DATE CVE VULNERABILITY TITLE RISK
2014-06-13 CVE-2012-3522 Cross-Site Scripting vulnerability in Qbnz Geshi
Cross-site scripting (XSS) vulnerability in contrib/langwiz.php in GeSHi before 1.0.8.11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
qbnz CWE-79
4.3
2014-06-13 CVE-2012-3521 Path Traversal vulnerability in Qbnz Geshi
Multiple directory traversal vulnerabilities in the cssgen contrib module in GeSHi before 1.0.8.11 allow remote attackers to read arbitrary files via a ..
network
low complexity
qbnz CWE-22
5.0