Vulnerabilities > THE Media Shoppe Berhad

DATE CVE VULNERABILITY TITLE RISK
2005-12-31 CVE-2005-4722 Information Disclosure vulnerability in Tmspublisher 3.0/3.3
_Request_Message.cfm in tmsPUBLISHER 3.3 allows remote attackers to obtain sensitive information via an invalid id argument to pagename.cfm, which reveals the installation path in an error message.
network
low complexity
the-media-shoppe-berhad
5.0
2005-12-31 CVE-2005-4721 Cross-Site Scripting vulnerability in the Media Shoppe Berhad Tmspublisher 3.3
Cross-site scripting (XSS) vulnerability in search.cfm in tmsPUBLISHER 3.3 allows remote attackers to inject arbitrary web script or HTML via the q parameter.
4.3