Vulnerabilities > WEB APP ORG > Medium

DATE CVE VULNERABILITY TITLE RISK
2006-03-28 CVE-2006-1427 Cross-Site Scripting vulnerability in Web-App.Org and Web-App.Net
Multiple cross-site scripting (XSS) vulnerabilities in WebAPP 0.9.9.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) id, (3) num, (4) board, (5) cat, (6) real, (7) viewcat, (8) img, or (9) curcatname parameter in cgi-bin/index.cgi, or (10) vsSD parameter in /mods/calendar/index.cgi.
network
web-app-org
4.3
2004-08-24 CVE-2004-1742 Directory Traversal vulnerability in Web-App.Org Webapp 0.9.9
Directory traversal vulnerability in WebAPP 0.9.9 allows remote attackers to view arbitrary files via a ..
network
low complexity
web-app-org
5.0