Vulnerabilities > Snitz Communications > Snitz Forums 2000 > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2005-11-01 | CVE-2005-3411 | Cross-Site Scripting vulnerability in Snitz Communications Snitz Forums 2000 3.4.05 Cross-site scripting (XSS) vulnerability in post.asp in Snitz Forums 2000 3.4.05 allows remote attackers to inject arbitrary web script or HTML via the type parameter in a Topic method. network snitz-communications | 4.3 |
2004-12-31 | CVE-2004-2720 | Cross-Site Scripting vulnerability in Snitz Communications Snitz Forums 2000 Cross-site scripting (XSS) vulnerability in register.asp in Snitz Forums 2000 3.4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via javascript events in the Email parameter. | 4.3 |
2004-09-16 | CVE-2004-1687 | Unspecified vulnerability in Snitz Communications Snitz Forums 2000 CRLF injection vulnerability in down.asp for Snitz Forums 2000 3.4.04 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the location parameter. | 5.0 |
2003-08-07 | CVE-2003-0492 | Cross-Site Scripting vulnerability in Snitz Communications Snitz Forums 2000 3.4.03 Cross-site scripting (XSS) vulnerability in search.asp for Snitz Forums 3.4.03 and earlier allows remote attackers to execute arbitrary web script via the Search parameter. network snitz-communications | 6.8 |