Vulnerabilities > Virtual Design Studios

DATE CVE VULNERABILITY TITLE RISK
2008-05-05 CVE-2008-2073 Path Traversal vulnerability in Virtual Design Studios Vlbook 1.21
Directory traversal vulnerability in include/global.inc.php in Virtual Design Studio vlbook 1.21 allows remote attackers to include and execute arbitrary local files via a ..
network
low complexity
virtual-design-studios CWE-22
7.5
2008-05-05 CVE-2008-2072 Cross-Site Scripting vulnerability in Virtual Design Studios Vlbook 1.21
Cross-site scripting (XSS) vulnerability in index.php in Virtual Design Studio vlbook 1.21 allows remote attackers to inject arbitrary web script or HTML via the l parameter, a different vector than CVE-2006-3260.
4.3
2006-06-27 CVE-2006-3260 HTML Injection vulnerability in Virtual Design Studios Vlbook 1.0.2
Cross-site scripting (XSS) vulnerability in index.php in vlbook 1.02 allows remote attackers to inject arbitrary web script or HTML via the message parameter.
4.3