Vulnerabilities > Xenis

DATE CVE VULNERABILITY TITLE RISK
2006-11-08 CVE-2006-5800 Cross-Site Scripting vulnerability in Xenis.creator CMS
Cross-site scripting (XSS) vulnerability in default.asp in xenis.creator CMS allows remote attackers to inject arbitrary web script or HTML via the nav parameter.
network
high complexity
xenis
2.6
2006-11-08 CVE-2006-5799 Input Validation vulnerability in Xenis.creator CMS
Multiple cross-site scripting (XSS) vulnerabilities in default.asp in xenis.creator CMS allow remote attackers to inject arbitrary web script or HTML via the (1) contid or (2) search parameters.
network
xenis
6.8
2006-11-08 CVE-2006-5798 Input Validation vulnerability in Xenis.creator CMS
SQL injection vulnerability in default.asp in Xenis.creator CMS allows remote attackers to execute arbitrary SQL commands via the contid parameter.
network
low complexity
xenis
7.5
2006-11-08 CVE-2006-5797 Input Validation vulnerability in Xenis.creator CMS
Multiple SQL injection vulnerabilities in default.asp in Xenis.creator CMS allow remote attackers to execute arbitrary SQL commands via the (1) nav, (2) s, or (3) print parameters.
network
low complexity
xenis
7.5