Vulnerabilities > Webboss

DATE CVE VULNERABILITY TITLE RISK
2023-08-03 CVE-2023-39096 Cross-site Scripting vulnerability in Webboss Webboss.Io CMS 3.7.0.1
WebBoss.io CMS v3.7.0.1 contains a stored Cross-Site Scripting (XSS) vulnerability due to lack of input validation and output encoding.
network
low complexity
webboss CWE-79
5.4
2023-08-03 CVE-2023-39097 Cross-site Scripting vulnerability in Webboss Webboss.Io CMS 3.7.0.1
WebBoss.io CMS v3.7.0.1 contains a stored cross-site scripting (XSS) vulnerability.
network
low complexity
webboss CWE-79
5.4
2023-07-21 CVE-2023-36339 Incorrect Authorization vulnerability in Webboss Webboss.Io CMS
An access control issue in WebBoss.io CMS v3.7.0.1 allows attackers to access the Website Backup Tool via a crafted GET request.
network
low complexity
webboss CWE-863
7.5
2023-07-21 CVE-2023-37742 Cross-site Scripting vulnerability in Webboss Webboss.Io CMS
WebBoss.io CMS before v3.7.0.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability.
network
low complexity
webboss CWE-79
6.1