Vulnerabilities > Whmcompletesolution

DATE CVE VULNERABILITY TITLE RISK
2006-02-13 CVE-2006-0652 Information Disclosure vulnerability in Whmcompletesolution 2.0/2.1/2.2
WHMCompleteSolution (WHMCS) before 2.3 assigns incorrect permissions to "resellers", which allows remote authenticated users to perform privileged actions or obtain sensitive information.
network
low complexity
whmcompletesolution
6.5
2005-12-14 CVE-2005-4235 Cross-Site Scripting vulnerability in WHMCompleteSolution
Cross-site scripting (XSS) vulnerability in knowledgebase.php in WHMCompleteSolution 2.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameters.
4.3